repo.or.cz
/
Samba.git
/
search
commit
grep
author
committer
pickaxe
?
search:
re
summary
|
log
|
graphiclog1
|
graphiclog2
|
commit
|
commitdiff
|
tree
|
refs
|
edit
|
fork
first
·
prev
·
next
CVE-2015-5370: s4:rpc_server: no authentication is indicated by pkt->auth_length...
2016-03-30
Stefan Metzmacher
CVE-2015-5370:
s
4:rpc_se
r
ver: no authenticat
i
o
n
is
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-30
Stefan Metzmacher
CVE-2015-5370
:
s4
:
rpc_se
r
ver: make
u
se of ta
l
loc_
z
ero()
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-30
Stefan Me
t
zmac
h
er
C
V
E
-2015-
5
370
:
s4:librpc/rpc: p
r
otect dce
r
pc_request_re
c
v
_
d
a
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-30
St
e
f
an Metzmacher
CVE-2015
-
537
0
: s4:librpc/rpc: u
s
e
d
ce
r
p
c_verify_nc
a
cn_packet
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-30
Stefan Metzmac
h
er
CVE-
2
015-53
7
0: s4:
l
ibrpc/rpc: handle DCERPC_PKT_FA
U
LT
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-30
Stefan Me
t
zm
a
c
h
e
r
CVE-2015-5370
:
s4:librpc/
r
pc: make use
of dcerpc_
m
ap_ack
_
rea
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-30
S
t
efan Metz
m
acher
C
VE-2015-5
3
70: s3:rpc_client: remove usele
s
s fra
g
_l
e
ngth
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-30
Stefan Metzmach
e
r
CV
E
-201
5
-5370: s3:rpc
_
c
lient: move AS/U ha
c
k to the
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-30
Stefan
M
etzmac
h
er
CVE-2
0
1
5
-5370: librpc/rp
c
: add a dcer
p
c_verify_ncacn_packet_
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-30
Stefa
n
Metzmac
h
er
C
V
E-2015-537
0
: s4:lib
r
pc
/
rpc:
fi
n
ally
verify the se
r
v
er
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-30
Stefa
n
Metzmach
e
r
CVE-2015-5
3
70: s4:librpc
/
rpc:
avoid us
i
ng dc
e
cli_security
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-30
Stefan Metzmacher
CVE-2015-5370:
s
4:libr
p
c
/rpc: s
i
mp
l
i
fy
c
hecks i
f
gensec
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-30
Stefan Met
z
m
a
cher
CVE-2015-537
0
: s4:librpc/rpc: avo
i
d de
r
eferencing
sec
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-30
Stefan Metzm
a
c
h
e
r
CVE-20
1
5-5370
:
s4:librpc/rpc:
always use ncacn_p
u
ll_request_
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-30
Stef
a
n Metzmacher
CVE-2015-5370: s4:librpc/r
p
c
:
av
o
id using c->
s
ecuri
t
y_state
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-30
Stefan Metzmach
e
r
C
VE
-
2015-5370
:
s
4
:
l
i
brpc
/
r
pc:
avoid
u
sing hs->p-
>
conn
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-30
Stefa
n
Metzm
a
cher
CV
E
-2015-5370: s4:librpc/r
p
c:
use a local
auth_
i
nfo
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-30
S
t
efan M
e
tz
m
a
c
h
er
CVE-2015-5370: s4:librpc/rpc: use
a
uth_context
_
id = 1
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-30
St
e
fan
Metzm
a
cher
CVE-20
1
5-5370:
s
4:librpc/
r
pc: mai
n
tain dcecli_security
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-30
Stefan Me
t
z
macher
CVE-2015-5370:
s
4
:librpc/rp
c
:
s
end a dcerpc_
s
ec
_
verification
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-30
Stefan Metzma
c
he
r
CVE-2015-5370: s3:li
b
rp
c
/rpc: don'
t
call dcerpc_pull_auth_tr
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-30
S
t
e
fan Metzmacher
CVE-2015-5370:
librpc/rpc: simplify
a
nd h
a
rden dcerpc_p
u
ll_a
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-30
Stefan
M
etzmac
h
er
CV
E
-2015-537
0
: dcerpc
.
idl: add DCERPC_{NCACN_PAYLO
A
D
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-30
S
t
efan Metzmach
e
r
CVE
-
2016-2118:
s3:rpc_server/samr: a
l
low _samr
_
ValidatePassw
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-30
S
t
e
fa
n
M
etzmacher
CVE-2016-2
1
18: s4:rpc_server/
s
amr: allow
_
samr_Valid
a
tePassw
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-30
Stefan Metzma
c
her
CVE-2016-211
8
: docs-xml: defa
u
lt "allow dcerpc auth
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-30
Stef
a
n
Metzmacher
CVE-2016-2118: s3:rpc_se
r
ver/{epmapper,echo}: allow
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-30
Stefan Metz
m
acher
C
V
E-2016-2118: s3:rpc_se
r
v
er/{samr,l
s
a,n
e
tlogon}: rejec
t
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-30
Stefan M
e
t
zmach
e
r
C
V
E-20
1
6
-
2118: s3
:
rpc_server: mak
e
u
s
e of "allow dcerpc
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-30
Stefan Me
t
z
macher
CVE-2016-2118
:
s4:rpc_s
e
rver/rpcec
h
o
: a
l
lo
w
DCERPC_AUTH_LEVE
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-30
Stefan Metzmacher
CVE-2016
-
2
118: s4:rp
c
_
ser
v
er/mgmt: allow
DCERPC
_
AUTH_L
E
VEL_
C
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-30
Stefa
n
M
e
t
z
macher
C
V
E-2016-211
8
: s4:rpc_server/epmapper
:
allow DCE
R
PC_AUTH
_
LEV
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-30
Stefan Metzm
a
c
h
er
C
V
E-2016-2
1
18: s4:rpc_ser
v
er/netlogon: r
e
ject DCERPC_AUTH_LE
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-30
Stefan Metzmacher
CVE-2016-2118: s4:rpc_server/samr: reject DCERP
C
_AUTH_L
E
VE
L
_
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-30
Stefan Metzmacher
CVE
-
2016-21
1
8:
s
4:rp
c
_server/lsa:
r
eject DCERPC
_
AUT
H
_LEVEL_C
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-30
Stefan Metzmacher
CVE-
2
016-2118: s4:
r
pc_server
:
make use of "allow dc
e
rpc
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-30
S
tefan Metzmac
h
er
CVE-20
1
6
-2118: docs-xml
:
a
d
d "
a
llow dcerp
c
auth
l
e
vel
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-30
S
t
efan Metzmach
e
r
C
VE-2016-2118: s4:librp
c
: u
s
e
i
n
te
g
rity by defa
u
lt
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-30
Stef
a
n Metzmacher
CVE-2016
-
2118: li
b
rpc: change
the default au
t
h leve
l
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-30
St
e
fan M
e
tzmacher
C
VE-2016-2118: s3: rpccl
i
ent: change the default aut
h
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-30
Stefan
Metzmacher
C
V
E
-2016-2118: s4:rpc_server/dnsse
r
ver: requ
i
r
e
at
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-30
Stefan Metzmacher
CVE-20
1
6-2118
:
python:tests/dcerp
c
: use [sign] for
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-30
Stefan Metz
m
acher
CVE-2016-2118
:
s4
:
rpc
_
server/backupkey: req
u
ire DCERPC
_
A
U
TH_
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-30
Stefan
M
etzmacher
CVE-2016-2118: s4:rpc_serv
e
r/drsu
a
pi:
r
equire D
C
ERPC_AUT
H
_LE
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-30
Ste
f
a
n Metzmacher
CVE
-
2016-2118: s4
:
rpc_server: ma
k
e it poss
i
ble
t
o
define
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-30
Stefan Metzmacher
CVE-2016-2115: docs-x
m
l: always default "clien
t
i
p
c
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-30
S
t
efan M
e
tzm
a
ch
e
r
CVE-2016
-
2115
:
s3:libsm
b
: le
t
SM
B
_S
I
GNI
N
G_IPC_D
E
FAULT
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-30
St
e
fan M
e
t
zmacher
CVE-
2
016-
2
1
15
:
s3:winbin
d
d: u
s
e lp_client_ipc_signing(
)
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-30
Stefan Metzmacher
CVE
-
20
1
6-
2
115:
s
3:w
i
nbindd
:
use lp_clie
n
t
_
i
p
c_{min
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-30
Stefan Metzmacher
CVE-2016-2115: s4:librpc/r
p
c: make use of
"
client
i
pc
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-30
St
e
f
a
n Me
t
zmacher
C
VE-2016-2
1
15: s4:libcli
/
raw: pass the minpr
o
tocol
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-30
S
tefan Metzma
c
her
CVE-2
0
16-2
1
1
5
: s
4
:li
b
cli/
r
aw
:
limit maxpro
t
ocol to
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-30
Stefan
M
etzmac
h
er
CVE-2016-2115: s4:li
b
cli/smb2: use the configured min_protocol
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-30
Stefan Met
z
mache
r
CVE-2016-2115: s4:libcli/raw: add smbcli_options
.
min_protocol
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-30
St
e
fan M
e
tzmacher
CVE-2016
-
2115:
docs-xml: add "cli
e
nt ipc signing" option
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-30
St
e
fan Metzmacher
CVE-2016-2115: docs-xml
:
add "client ipc min
p
rotocol
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-30
Stefan Metz
m
acher
CVE-2016-2
1
14: docs-x
m
l
: let the
"smb signing" doc
u
m
e
ntatio
n
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-30
Stefan
Metzmacher
CVE-20
1
6-2114:
s3:smbd: use the correct
default values
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-30
Stefan Met
z
m
acher
CVE-2016-2114: s4:smb2_
s
e
r
ver: fi
x
sessi
o
n setup wit
h
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-30
Stefan Me
t
zmache
r
CVE-20
1
6-2113: docs-xml:
l
et
"tls verify
p
eer" default
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-30
S
tefan
Metzmache
r
CVE
-
2016-
2
1
1
3: selftes
t
: use "tls veri
f
y pe
e
r
=
n
o_check"
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-30
Stefan
Metzmache
r
CVE-2016-2113:
sel
f
test: test all "tl
s
v
e
ri
f
y peer
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-30
Stefan Metzmacher
CV
E
-
2
016-2113: s
4
:librp
c
/rpc: verify the rpc_prox
y
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-30
S
t
e
f
an Metzmacher
C
V
E-
2
016-21
1
3: s4:libcli/ldap: verify the server
c
e
rtificate
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-30
Stef
a
n Met
z
m
ac
h
er
CVE-20
1
6
-
2
113: s4:selftest: explicitly use '--option
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-30
Stefan M
e
tzmac
h
er
C
V
E-2016-211
3
: docs
-
xml:
a
d
d "tls
v
erify peer" opt
i
on
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-28
S
t
efan Me
t
zmac
h
er
CVE
-
2
0
16-
2
1
1
3: s4:lib
/
tls: implement infra
s
tructure
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-28
St
e
fan Metzma
c
he
r
CVE-2016-2113: s4:lib
/
tls:
c
reate better
c
e
r
tific
a
tes
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-28
Stefan Metzmacher
CVE
-
2016-211
2
:
docs-xml
:
c
h
a
n
g
e
the default of "ldap
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-28
Stefan Metzmacher
CVE-2016-2112: s
4
:selftest: run some lda
p
te
s
t
against
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-28
S
t
efa
n
Metzm
a
cher
CVE-2016-2
1
12:
sel
f
test:
s
erv
e
r
s with e
x
plicit "ldap
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-28
Stefan Metzmache
r
CV
E
-20
1
6-2112: s4:selftes
t
: run samba4
.
ldap
.
bind against
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-28
S
tefan
M
etzmacher
C
VE-2016-2112: s4:ldap_
s
e
r
ver: implement "l
d
ap server
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-28
Stefa
n
Metzmacher
CVE-2016-2112: docs-xml: add "ldap serv
e
r require s
t
ro
n
g
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-28
Stefan M
e
tzmach
e
r
CV
E
-20
1
6-2112:
s
4:
l
dap_se
r
ver: reduce sc
o
p
e o
f
old_session_i
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-28
Stefan Metzmacher
CVE
-
2
0
1
6-2
1
12: s4:selftes
t
: u
s
e --
o
ption=clientldapsaslwrapp
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-28
Stef
a
n Metzmache
r
CVE-2
0
1
6
-2112: s4:libcli/
l
dap:
auto u
p
g
r
ade to SIGN
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-28
Stefan Metz
m
ache
r
CVE-2
0
16-21
1
2
: s4:libcli/ldap: mak
e
sure w
e
dete
c
t
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-28
Stef
a
n Metzmacher
CV
E
-2
0
16-2112:
s4:libcli/ldap: honour "client ldap
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-28
Stefan Metz
m
ache
r
CVE-2016-2112: s3:libads: make s
u
re we detect downgrade
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-28
Stef
a
n Metzma
c
h
e
r
CVE-20
1
6-211
1
: doc
s
-xml/smbdotconf: defa
u
lt "ra
w
N
TLMv2
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-28
Stefan Metzmacher
CVE-201
6
-2111
:
selftest:Samba3: use "
r
aw
NTL
M
v2 au
t
h
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-28
Stefan Met
z
m
a
c
her
CVE-2016-211
1
: s4:sm
b
_s
e
rver:
i
m
plement "raw NTLMv2
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-28
Ste
f
an Metzmac
h
er
C
VE-2016-211
1
: s3:
a
uth: imp
l
ement "raw NTL
M
v
2
auth
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-28
Stefan Metzmacher
CV
E
-20
1
6-2111(<=4
.
3): docs-xml: a
d
d "raw NTLMv2 a
u
th
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-28
Stefan Metzmac
h
er
CVE
-
2
0
16
-
2111: d
o
cs
-
xml
:
add "raw
NTLM
v
2 auth" defa
u
l
ting
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-28
Stefa
n
M
etzmacher
C
V
E-20
1
6-2111:
d
ocs-xm
l
:
document
t
h
e
n
ew "
c
lient NTLMv2
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-28
Stefan Metzmache
r
CVE-
2
0
1
6-
2
111: s3
:
libsmb: don't
s
e
n
d
a
raw NTLMv2 r
e
sponse
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-28
Stefan Metzmacher
C
V
E-2016-2111: s4:libcli: don'
t
send a raw NTLMv2 response
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-28
S
te
f
an Metzmacher
CVE-
2
016-2111: s4:param: use "client
u
s
e spnego" to
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-28
S
tefan Metzmacher
CVE-2016-2111:
s4:libc
l
i: don't
allow the
L
A
N
MA
N
2 sessi
o
n
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-28
Stefan
M
e
tzmacher
CVE-2016-2111: s4
:
tort
u
r
e
/base
:
don't
u
s
e ntlmv2 for
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-28
Stef
a
n
M
etzmache
r
C
V
E-2016-2111: s4:t
o
r
t
ure/raw: don'
t
use ntlmv2 for
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-28
Stefan Metz
m
acher
CVE
-
2016-2111:
s
3
:rpc_s
e
rv
e
r/netlog
o
n:
check NTLMv
2
_RE
S
PONSE
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-28
Stefan Metzmacher
CVE
-
201
6
-2111: s4:
r
pc_server/
n
e
t
l
o
gon: check NTLM
v
2_RESP
O
NSE
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-28
S
t
ef
a
n Metzmacher
C
V
E-2
0
16-2111
:
libcli
/
auth: add
N
TLMv2_RESPONSE_v
e
rify_netlo
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-28
Stef
a
n Metz
m
acher
C
V
E-2016-211
1
: s4:torture/rpc: fix rpc
.
pa
c
ntlm
v
2 test
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-28
St
e
f
a
n M
e
tzmacher
CVE
-
2016-2111: s4:
t
or
t
u
re
/
rpc:
f
ix rpc
.
samba3
.
netlo
g
on
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-28
Stefan Metzmac
h
er
CVE-2016-2
1
1
1
: s3:rp
c
_
s
erv
e
r/netlogon: r
e
q
u
ire DCERPC_AUTH_L
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
2016-03-28
St
e
fan Metzmac
h
er
CVE-2016-211
1
: s4
:
rpc_server/net
l
ogo
n
: require DCERPC_AUTH_L
.
.
.
Signed-off-by: Stefan Metzmacher <
metze@samba.org
>
commit
|
commitdiff
|
tree
next