CVE-2022-2031 s4:kdc: Limit kpasswd ticket lifetime to two minutes or less
commita46d0ac59f074f999217586f18ba8772a645b246
authorJoseph Sutton <josephsutton@catalyst.net.nz>
Tue, 24 May 2022 05:53:49 +0000 (24 17:53 +1200)
committerJule Anger <janger@samba.org>
Sun, 24 Jul 2022 09:55:51 +0000 (24 11:55 +0200)
treeea1ac56b0672706c4c1db7858a360274fc65767b
parent04e452890ada8390828aa4c5c87ceefe44daa50f
CVE-2022-2031 s4:kdc: Limit kpasswd ticket lifetime to two minutes or less

This matches the behaviour of Windows.

BUG: https://bugzilla.samba.org/show_bug.cgi?id=15047

Signed-off-by: Joseph Sutton <josephsutton@catalyst.net.nz>
Reviewed-by: Andreas Schneider <asn@samba.org>
[jsutton@samba.org Adapted entry to entry_ex->entry; included
 samba_kdc.h header file]
selftest/knownfail_heimdal_kdc
selftest/knownfail_mit_kdc
source4/kdc/db-glue.c
source4/kdc/mit-kdb/kdb_samba_principals.c
source4/kdc/samba_kdc.h