CVE-2016-2118: s3:rpc_server/{samr,lsa,netlogon}: reject DCERPC_AUTH_LEVEL_CONNECT...
commit1ac5f3757e98340219523da9b3cc3485376cb5c7
authorStefan Metzmacher <metze@samba.org>
Fri, 7 Aug 2015 07:50:30 +0000 (7 09:50 +0200)
committerStefan Metzmacher <metze@samba.org>
Wed, 30 Mar 2016 02:18:52 +0000 (30 04:18 +0200)
tree991afd118d6ba4cf91cf038c76ba4071e0311def
parent3ba93ce2a0bab7865a3618abe469df0fb3e3c44a
CVE-2016-2118: s3:rpc_server/{samr,lsa,netlogon}: reject DCERPC_AUTH_LEVEL_CONNECT by default

This prevents man in the middle downgrade attacks.

BUG: https://bugzilla.samba.org/show_bug.cgi?id=11616

Pair-Programmed-With: Günther Deschner <gd@samba.org>

Signed-off-by: Stefan Metzmacher <metze@samba.org>
Signed-off-by: Günther Deschner <gd@samba.org>
selftest/knownfail
source3/rpc_server/srv_pipe.c