]> git.ipfire.org Git - thirdparty/glibc.git/commitdiff
nss_db: Fix initialization of iteration position [BZ #20237]
authorFlorian Weimer <fweimer@redhat.com>
Sat, 11 Jun 2016 10:12:56 +0000 (12:12 +0200)
committerMike Frysinger <vapier@gentoo.org>
Sat, 12 Nov 2016 05:44:38 +0000 (00:44 -0500)
When get*ent is called without a preceding set*ent, we need
to set the initial iteration position in get*ent.

Reproducer: Add “services: db files” to /etc/nsswitch.conf, then run
“perl -e getservent”.  It will segfault before this change, and exit
silently after it.

(cherry picked from commit 31d0a4fa646db8b8c97ce24e0ec0a7b73de4fca1)
(cherry picked from commit 79ad3fa2b1f38997be255d4eb709da928b66796a)

nss/nss_db/db-XXX.c

index 125a5e9b12616c345eaa14471d033a4ad307db96..2d13edda278cd9737542696352aeb2cfab0b34db 100644 (file)
@@ -77,7 +77,7 @@ CONCAT(_nss_db_set,ENTNAME) (int stayopen)
       keep_db |= stayopen;
 
       /* Reset the sequential index.  */
-      entidx  = (const char *) state.header + state.header->valstroffset;
+      entidx  = NULL;
     }
 
   __libc_lock_unlock (lock);
@@ -253,8 +253,14 @@ CONCAT(_nss_db_get,ENTNAME_r) (struct STRUCTURE *result, char *buffer,
          H_ERRNO_SET (NETDB_INTERNAL);
          goto out;
        }
+      entidx = NULL;
     }
 
+  /* Start from the beginning if freshly initialized or reset
+     requested by set*ent.  */
+  if (entidx == NULL)
+    entidx = (const char *) state.header + state.header->valstroffset;
+
   status = NSS_STATUS_UNAVAIL;
   if (state.header != MAP_FAILED)
     {