repo.or.cz
/
Samba.git
/
search
commit
grep
author
committer
pickaxe
?
search:
re
summary
|
log
|
graphiclog1
|
graphiclog2
|
commit
|
commitdiff
|
tree
|
refs
|
edit
|
fork
first
·
prev
·
next
tests/dns_forwarder: Add testing for DNS forwarding
2016-04-12
Stefan Metzma
c
her
CVE-2015-53
7
0: s4:librpc/rpc: protect dcerpc_request_recv_d
a
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
S
tefan
Metzm
a
ch
e
r
C
V
E-2
0
15-5
3
70: s4:l
i
brpc
/
rpc: use
d
cerpc_verify_ncacn_pack
e
t
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
Stefan Metzmache
r
CVE-2015
-
5370: s4:l
i
br
p
c/rpc: handle DCE
R
PC_P
K
T
_
FAULT
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
Stefan Metzmacher
CVE-2015-5370: s4:lib
r
pc/rpc: make
u
se of d
c
er
p
c_map_
a
ck_rea
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
Stefan Metzmac
h
er
C
VE-2015-5370: s3:rp
c
_cli
e
nt: remove useless
frag_
l
ength
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
Stefa
n
Metzm
a
cher
CVE-2
0
15-53
7
0: s3
:
rpc_client: move AS/U hac
k
t
o the
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
Stefan Metzmacher
CVE-2
0
15-537
0
: librpc/rpc:
add a
dcerpc_
v
e
r
i
fy_ncac
n
_packet
_
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
S
tefan
Met
z
macher
CVE-2015-5370: s4:l
i
brpc/rpc: finally verify the serve
r
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
St
e
fa
n
Me
t
z
ma
c
her
CVE-2
0
15-53
7
0:
s
4:librpc/rpc: a
v
oid usi
n
g dcecli_security
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
Stefan Metzmacher
C
V
E-2015-
5
3
7
0: s4:l
i
b
r
pc
/
rpc
:
si
m
plify checks if gensec
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
Stefan
M
e
tz
m
a
cher
CVE-2015
-
5370: s4:librpc/rpc: av
o
id
d
ereferencing sec
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
Stefan Me
t
zma
c
her
CVE-2015-5370:
s
4:librpc/rpc: always use ncacn_pul
l
_request_
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
Stefan Metzmache
r
CVE-
2
015-
5
370: s4:librpc/rpc: avoid using c->s
e
curity
_
s
t
a
te
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
S
tefan Metzm
a
che
r
CV
E
-2015
-
5370: s4:
l
i
brpc/rpc: avoid using hs->p
-
>
c
onn
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
Stefan Metzma
c
her
CVE-20
1
5-
5
370: s4:librpc/rpc: us
e
a loca
l
auth_info
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
Stefa
n
Metzmacher
C
VE-
2
0
15-5370
:
s4:librpc/rp
c
: use auth_con
t
e
xt_id =
1
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
Stefan Metzmacher
CVE-2015-5370
:
s
4
:librpc/rpc:
m
aintain dcecli
_
s
e
curity
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
St
e
fan M
e
t
zmacher
CVE
-
2015-5370
:
s4
:
lib
r
p
c
/r
p
c
: send a dcerpc_sec_veri
f
ication
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
Stefan Metzmacher
CVE-
2
015
-
5370
:
s3:librpc/r
p
c
: don'
t
c
a
ll dcerpc_pull_auth_tr
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
S
t
e
fan
M
etzm
a
ch
e
r
CV
E
-2015-5370: librpc/rpc:
simplify and
harden dce
r
pc
_
p
u
ll_
a
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
S
tefan Metzmacher
CVE-
2
015-537
0
: dcerpc
.
id
l
: a
d
d DCERPC_
{
NCACN_PAYLOAD
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
Stefan Metzma
c
her
CVE-2016-2118: s3:rp
c
_server/sam
r
: allow _s
a
mr_Va
l
i
datePassw
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
Stefan Metz
m
acher
CVE-2016-2118:
s
4:rpc_server/sa
m
r: al
l
ow _samr_ValidatePassw
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
Stefan
Met
z
mac
h
er
CV
E
-2016-21
1
8
:
docs
-
xml:
def
a
ult "al
l
ow dcerpc auth
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
Stefan M
e
tzmacher
CVE-2016-2118: s3:rpc
_
server
/
{epm
a
pper,echo}: allow
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
Stef
a
n Metzmacher
CVE-20
1
6-2118: s3:
r
pc_serve
r
/{samr,lsa
,
n
etlog
o
n}: reject
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
Stefa
n
Metzmach
e
r
C
VE-
2
01
6
-21
1
8: s3:rp
c
_serv
e
r:
m
ake use of "allow dcerpc
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
S
tefan Metzmac
h
er
C
V
E-2016-21
1
8: s4:rpc
_
serve
r
/rpc
e
cho:
allow DCERPC_AUTH_LEVE
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
Stefan Metzma
c
her
CV
E
-2
0
16-2118: s4:rpc_server/
m
gm
t
: a
l
l
ow DCERPC_AUTH_LEVEL
_
C
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
S
t
efan Metzmache
r
CVE-2016
-
2
1
18: s4:rpc_serve
r
/ep
m
a
pper: allow DCERPC_AUTH_
L
EV
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
Stefan
Metzmacher
CVE-2016-2118:
s
4
:rpc_server/ne
t
l
o
gon: reject DCE
R
PC_AUTH_
L
E
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
Stefan Metzmache
r
CVE
-
201
6
-2118: s4:rp
c
_server/samr: rejec
t
D
CERPC_AUTH_LEV
E
L_
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
Stefan Me
t
zmac
h
er
CVE-2016-
2
118: s4:rpc_server/lsa: reject DCERPC_
A
UTH_LE
V
EL
_
C
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
Stefan Metzmacher
CVE-201
6
-2118
:
s
4:rpc_server: mak
e
use of
"allow
d
cerpc
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
Stefan Metzmacher
CVE-2016-2118: d
o
c
s
-xml: add "all
o
w dce
r
pc
auth level
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
Stefan Metzma
c
her
C
VE-2016-2118: s
4
:librpc: u
s
e in
t
egrity
b
y def
a
u
l
t
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
Stef
a
n Metzmach
e
r
C
VE-2
0
16-2118:
l
ib
r
pc: cha
n
g
e the default a
u
t
h
lev
e
l
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
Stefan
M
etz
m
a
cher
CVE
-
2016
-
2118
:
s3: rpcclie
n
t: change
t
he default auth
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
Ste
f
an M
e
tzmac
h
er
CVE-20
1
6-2
1
1
8: s
4
:rp
c
_s
e
rver/dnsserver:
r
equire at
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
Stefan Me
t
zmache
r
CVE
-
20
1
6-2
1
18: pyt
h
on:t
e
sts/
d
cerpc
:
use [sign] fo
r
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
Ste
f
an Metzmach
e
r
CV
E
-
2
016-2118: s4:rpc_server/bac
k
up
k
ey: require DCERPC_AUTH_
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
S
t
efan Metz
m
acher
CVE-2016-2118: s
4
:
r
pc_serve
r
/drsuapi: require DCERPC_AUTH_LE
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
Stef
a
n
Metzmacher
CV
E
-
2016-2118: s4
:
rpc_serve
r
: make it
p
ossible to de
f
ine
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
Stefan Metz
m
ach
e
r
CVE-2016-2115: docs-xml: always defa
u
l
t "client ipc
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
Ste
f
an
Me
t
z
m
acher
C
V
E
-
2
016-2115: s3:libs
m
b
:
let
SMB_SIGNING_IPC_DEFAULT
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
Stefan M
e
t
z
macher
C
V
E
-
2
01
6
-2115: s3:winbindd: use
l
p_
c
lient_ipc_signing()
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
St
e
fan Metzmacher
CVE-2016-21
1
5: s3:winbi
n
dd: us
e
lp_client_ipc_{min
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
S
tefan M
e
tzmache
r
CVE-2016-2115: s4:librp
c
/rpc
:
make use of
"
c
l
ient ipc
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
S
t
efan
M
etzmacher
C
VE-2016-2115: s4:
l
ibcli/raw: pass the minprotocol
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
Stefan
M
etzmac
h
er
C
V
E-2016-
2
115: s4:libcli/raw: limit maxprotocol to
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
St
e
f
an Met
z
macher
CV
E
-2
0
16-2115:
s
4:
l
ibcli/smb2: use the c
o
nfigured mi
n
_protocol
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
Stefan Metzmac
h
er
C
V
E-2016-2115:
s4
:
libcl
i
/r
a
w: add s
m
bcl
i
_options
.
m
i
n_proto
c
ol
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
Stefan Metzmacher
CVE-2016-21
1
5: docs-xml: ad
d
"client i
p
c
s
igning" option
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
St
e
fan Metzmacher
CVE-20
1
6
-
2115: docs-xml: add "client ipc min protoc
o
l
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
St
e
fan Me
t
zm
a
cher
C
V
E-2016-2114: docs-xml: let the "
s
mb sig
n
ing" documentation
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
Ste
f
an
M
etz
m
acher
CVE-2016-211
4
: s3:
s
mbd: use
t
he correct default values
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
S
t
efan Me
t
zmacher
CVE-2016-2114: s4:smb
2
_
s
er
v
er: fix session setup
with
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
Stefan Metzmacher
CVE-2016-2113
:
docs-
x
m
l:
l
et
"t
l
s verify peer" de
f
ault
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
Stefa
n
Metzmacher
CVE-2016
-
2113: selftest: use "tls verify pe
e
r =
n
o_check"
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
St
e
fan
M
etzmacher
C
V
E
-2016-2113:
s
elftest: test al
l
"
t
l
s ver
i
fy peer
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
Stef
a
n Metzmacher
CVE-2
0
16-2
1
1
3
: s4:librpc/rpc: verify t
h
e rpc_pro
x
y
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
Stefan Metzmacher
CVE-2
0
16-
2
113: s4:libcli/ldap: verif
y
the ser
v
er certifi
c
ate
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
S
tef
a
n Metzm
a
ch
e
r
CVE-201
6
-
21
1
3
:
s4:selftest: explic
i
tly
use '--optio
n
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
Stefan Metzmac
h
er
CVE-2016-211
3
: do
c
s-xml
:
add "tls verify pe
e
r
" option
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
Stefan Metzmacher
CV
E
-20
1
6-
2
113: s4:lib
/
tls: implement infrastructure
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
S
t
ef
a
n Metz
m
acher
CV
E
-
2016-2113: s4:lib/tls
:
cre
a
te better certificates
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
Stef
a
n Me
t
zma
c
her
CVE-2016-2112: docs-xml:
change the default of "ld
a
p
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
Stefan Met
z
macher
CVE-
2
016-2112: s4
:
s
elftest:
r
un s
o
me l
d
ap
t
est
a
g
a
inst
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
Stefan Metzmacher
C
V
E
-
2
016-2112: selftest: serve
r
s with explicit "ldap
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
Ste
f
a
n
M
etzmach
e
r
CVE-2016-2112: s4:selftes
t
: run samba4
.
ldap
.
bind against
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
Stefan
M
et
z
macher
CVE-2016-2112: s4:
l
d
ap_server: imple
m
e
n
t "ld
a
p se
r
v
e
r
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
Stefan Metzmac
h
e
r
CVE-
2
016-2112: docs-xml: add
"
l
dap serv
e
r re
q
uire strong
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
Stefan Metzmacher
CVE
-
2016-2112: s4:ldap_server:
r
educe sco
p
e of
o
ld_session_i
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
Stefan Me
t
z
m
acher
C
V
E-2016-2112: s4:
s
el
f
test:
u
s
e --opt
i
on
=
clientldapsaslwrapp
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
Stef
a
n
M
e
tzmacher
CVE-2016-2112: s4
:
li
b
cli/ldap: auto
upgrade
t
o SIG
N
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
Stefan Metzmach
e
r
CVE-2016-2112
:
s4:libcli/
l
dap: m
a
ke
s
ure we detect
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
Ste
f
a
n Met
z
m
acher
CVE-2016
-
2112
:
s4:l
i
bcli/lda
p
:
honour "client ldap
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
S
t
efan Metzmacher
CVE-2016-2112:
s
3:l
i
bads: ma
k
e su
r
e we det
e
ct downgrade
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
St
e
fan Me
t
z
m
ache
r
CVE-2016-211
1
: docs-
x
ml
/
smbdotconf: default "
r
aw NTLM
v
2
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
St
e
fan
M
etzmac
h
e
r
CVE-20
1
6-2111: selftest:Samba3: use "raw NTLMv2
a
uth
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
Stefan Metz
m
a
c
h
er
CVE-2016-2111: s4:smb_server: impl
e
ment "r
a
w
NTLMv2
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
St
e
f
an M
e
tzm
a
cher
CVE-2016-21
1
1
:
s
3:auth: implemen
t
"
r
a
w NTLM
v
2
auth
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
St
e
fan Metzmacher
C
V
E-2016-2111: do
c
s-xml: a
d
d "raw N
T
LM
v
2 auth"
defaulting
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
S
t
efan
Metzmac
h
er
CVE-2016
-
2111
:
docs-xml
:
document the new "clie
n
t
NTLMv2
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
S
tefan
Metzmacher
CVE-20
1
6-2111: s
3
:libsmb: d
o
n'
t
send a raw
N
TLMv2 response
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
Stefan Metz
m
a
cher
C
V
E
-
201
6
-2111: s4
:
libc
l
i: don't send a raw NTLMv2
r
es
p
onse
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
Stefan M
e
t
z
macher
CVE
-
2016-2111: s4:param: use "client
u
s
e
spnego" to
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
Ste
f
a
n Metzma
c
her
CVE-201
6
-
2
1
11: s4
:
libcli: d
o
n't
a
llow
t
h
e
LANMAN2 sess
i
on
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
Stefan M
e
tzma
c
h
e
r
CVE
-
2
0
16-211
1
: s4:to
r
ture/bas
e
: don'
t
use ntl
m
v2
f
o
r
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
Stefan Metz
m
acher
CVE-2016-211
1
: s4:torture/ra
w
: don't
u
s
e
ntlmv2 for
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
Stefan Metzmacher
CVE-2016-2111: s3:rpc_ser
v
er/netlogon: che
c
k NTLM
v
2_R
E
SPON
S
E
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
Stefan
Metzmacher
CVE-2016-
2
11
1
: s4:rpc_
s
erve
r
/netlogon:
c
heck NTLMv2_RESPONSE
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
S
t
e
f
a
n Metzmac
h
er
CVE
-
2
0
16-2
1
11:
l
ibcli/au
t
h
:
add
N
TLMv2_RESP
O
N
S
E_verify
_
net
l
o
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
Stefan
Metzmac
h
er
CVE-2016-2111: s
4
:torture/
r
p
c
: fix rpc
.
p
a
c
n
tlmv2 test
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
Stefan Metzmac
h
e
r
CVE
-
2
0
1
6
-2111:
s4:torture
/
rpc: fix rpc
.
s
a
mba3
.
netl
o
go
n
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
Stefa
n
Metz
m
acher
CVE-
2
016-2111: s3:rpc_server/net
l
ogon
:
require DCERPC_AU
T
H_L
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
Stefan Metzmacher
CVE-2016-2111:
s
4:rpc_
s
erver/net
l
o
gon: req
u
ir
e
DC
E
R
PC_AUTH_L
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
Stefa
n
Metzm
a
cher
CVE
-
2016-2111: s4:rpc
_
s
e
rver
:
implem
e
nt 'ser
v
e
r schannel
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
Stefa
n
Metzmacher
CVE-2016-2111:
a
uth/
g
ensec:
c
orrec
t
ly
report GENSE
C
_
FEATU
R
E_
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
2016-04-12
Stefan Metzmacher
CVE-20
1
6-2111:
auth/ge
n
sec: require DCERPC_AUTH_LEVEL_INTEG
R
.
.
.
Signed-off-by:
Stefan Metzmacher
<metze@samba.org>
commit
|
commitdiff
|
tree
next