CVE-2022-2031 tests/krb5: Test truncated forms of server principals
commit389a5523485dfbd48e87b6ee9c39c6c2e16294a0
authorJoseph Sutton <josephsutton@catalyst.net.nz>
Tue, 14 Jun 2022 03:23:55 +0000 (14 15:23 +1200)
committerJule Anger <janger@samba.org>
Sun, 24 Jul 2022 09:55:51 +0000 (24 11:55 +0200)
tree39c3c087e5edb8fc80a8b9685b54ba664841aa93
parentc7408dd944ee5a0de5f04079d158f4575fb9036a
CVE-2022-2031 tests/krb5: Test truncated forms of server principals

We should not be able to use krb@REALM instead of krbtgt@REALM.

BUG: https://bugzilla.samba.org/show_bug.cgi?id=15047

Signed-off-by: Joseph Sutton <josephsutton@catalyst.net.nz>
Reviewed-by: Andreas Schneider <asn@samba.org>
[jsutton@samba.org Fixed conflicts due to having older version of
 _run_as_req_enc_timestamp()]
python/samba/tests/krb5/as_req_tests.py
selftest/knownfail_heimdal_kdc
selftest/knownfail_mit_kdc