<?xml version="1.0" encoding="UTF-8" standalone="yes" ?>
<!DOCTYPE bugzilla SYSTEM "http://bugs.gentoo.org/bugzilla.dtd">

<bugzilla version="2.22.7"
          urlbase="http://bugs.gentoo.org/"
          maintainer="bugzilla@gentoo.org"
>

    <bug>
          <bug_id>154328</bug_id>
          
          <creation_ts>2006-11-07 00:50 0000</creation_ts>
          <short_desc>net-proxy/3proxy User DoS?</short_desc>
          <delta_ts>2006-11-28 17:31:27 0000</delta_ts>
          <reporter_accessible>1</reporter_accessible>
          <cclist_accessible>1</cclist_accessible>
          <classification_id>1</classification_id>
          <classification>Unclassified</classification>
          <product>Gentoo Security</product>
          <component>Vulnerabilities</component>
          <version>unspecified</version>
          <rep_platform>All</rep_platform>
          <op_sys>Linux</op_sys>
          <bug_status>RESOLVED</bug_status>
          <resolution>INVALID</resolution>
          <bug_file_loc>http://www.security.nnov.ru/soft/3proxy/0.5.3a/Release.notes.txt</bug_file_loc>
          <status_whiteboard>jaervosz</status_whiteboard>
          
          <priority>P2</priority>
          <bug_severity>normal</bug_severity>
          <target_milestone>---</target_milestone>
          
          
          
          <everconfirmed>1</everconfirmed>
          <reporter>jaervosz@gentoo.org</reporter>
          <assigned_to>security@gentoo.org</assigned_to>
          <cc>net-proxy@gentoo.org</cc>

      

      
          <long_desc isprivate="0">
            <who>jaervosz@gentoo.org</who>
            <bug_when>2006-11-07 00:50:48 0000</bug_when>
            <thetext>Fixed: NTLM authentication doesn&apos;t work for NT-encoded passwords and may
  cause account blocking (reported by boris16 at tut.by)</thetext>
          </long_desc>
          <long_desc isprivate="0">
            <who>vorlon@gentoo.org</who>
            <bug_when>2006-11-09 06:02:42 0000</bug_when>
            <thetext>CC&apos;ing net-proxy

this does not really sound like a security issue, does it?</thetext>
          </long_desc>
          <long_desc isprivate="0">
            <who>mrness@gentoo.org</who>
            <bug_when>2006-11-09 06:37:08 0000</bug_when>
            <thetext>Created an attachment (id=101536)
The only source file differences between 0.5.3 and 0.5.3a

This patch contains the only source file differences between 0.5.3 and 0.5.3a.</thetext>
          </long_desc>
          <long_desc isprivate="0">
            <who>mrness@gentoo.org</who>
            <bug_when>2006-11-09 06:45:03 0000</bug_when>
            <thetext>I&apos;ve bumped the version to 0.5.3a, but I don&apos;t understand the problem. 

In first case, 2 pointers are converted to unsigned, then substracted, then the result is casted to unsigned char.
In second case, 2 pointers are converted to (unsigned char*), then substracted, then the result is casted to unsigned char.

At first look, I don&apos;t see any difference between those 2 cases. 
Mike, can you explain it, please?</thetext>
          </long_desc>
          <long_desc isprivate="0">
            <who>vapier@gentoo.org</who>
            <bug_when>2006-11-09 15:54:50 0000</bug_when>
            <thetext>that change is what i requested

the diff you should be reviewing is 0.5.2 to 0.5.3a</thetext>
          </long_desc>
          <long_desc isprivate="0">
            <who>mrness@gentoo.org</who>
            <bug_when>2006-11-10 07:02:17 0000</bug_when>
            <thetext>Doesn&apos;t look like a security issue to me. The only NTLM related change is in proxy.c file:
        &quot;HTTP/1.0 407 Proxy Authentication Required\r\n&quot;
-       &quot;Proxy-Authenticate: basic realm=\&quot;proxy\&quot;\r\n&quot;
        &quot;Proxy-Authenticate: NTLM\r\n&quot;
+       &quot;Proxy-Authenticate: basic realm=\&quot;proxy\&quot;\r\n&quot;
        &quot;Proxy-Connection: close\r\n&quot;</thetext>
          </long_desc>
          <long_desc isprivate="0">
            <who>jaervosz@gentoo.org</who>
            <bug_when>2006-11-20 22:40:04 0000</bug_when>
            <thetext>Alin/SpanKY any news on this one? Or is it INVALID?</thetext>
          </long_desc>
          <long_desc isprivate="0">
            <who>mrness@gentoo.org</who>
            <bug_when>2006-11-20 22:50:11 0000</bug_when>
            <thetext>I&apos;ve looked over the diff between 0.5.2 and 0.5.3 and I didn&apos;t found a security security issue in it. Ask Mike if he has knowledge of such issue (he isn&apos;t member of net-proxy team so it doesn&apos;t receive this comment on email).</thetext>
          </long_desc>
          <long_desc isprivate="0">
            <who>jaervosz@gentoo.org</who>
            <bug_when>2006-11-20 23:56:39 0000</bug_when>
            <thetext>Thx Alin. SpanKY is on the security team, so he should be getting these as well.</thetext>
          </long_desc>
          <long_desc isprivate="0">
            <who>vapier@gentoo.org</who>
            <bug_when>2006-11-28 17:31:27 0000</bug_when>
            <thetext>not a security issue, thanks Alin for reviewing

i tend to read security lists in bulk ;)</thetext>
          </long_desc>
      
          <attachment
              isobsolete="0"
              ispatch="1"
              isprivate="0"
          >
            <attachid>101536</attachid>
            <date>2006-11-09 06:37 0000</date>
            <desc>The only source file differences between 0.5.3 and 0.5.3a</desc>
            <filename>ntlm.c.diff</filename>
            <type>text/plain</type>
            <data encoding="base64">ZGlmZiAtTnJ1IDAuNS4zL3NyYy9udGxtLmMgMC41LjNhL3NyYy9udGxtLmMKLS0tIDAuNS4zL3Ny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=
</data>        

          </attachment>
    </bug>

</bugzilla>