1
0
mirror of https://github.com/samba-team/samba.git synced 2024-12-23 17:34:34 +03:00
samba-mirror/source4/ldap_server
Garming Sam d2c98abde1 CVE-2018-16851 ldap_server: Check ret before manipulating blob
In the case of hitting the talloc ~256MB limit, this causes a crash in
the server.

Note that you would actually need to load >256MB of data into the LDAP.
Although there is some generated/hidden data which would help you reach that
limit (descriptors and RMD blobs).

BUG: https://bugzilla.samba.org/show_bug.cgi?id=13674

Signed-off-by: Garming Sam <garming@catalyst.net.nz>
Reviewed-by: Andrew Bartlett <abartlet@samba.org>
2018-11-28 08:22:24 +01:00
..
devdocs
ldap_backend.c dsdb: pass the remote address to samdb connect 2018-05-10 20:02:23 +02:00
ldap_bind.c ldap_server: Plumb ldb error string from a failed connect to ldapsrv_terminate_connection() 2017-09-20 02:25:30 +02:00
ldap_extended.c s4:ldap_server: add support for async notification requests 2016-02-17 03:43:23 +01:00
ldap_server.c CVE-2018-16851 ldap_server: Check ret before manipulating blob 2018-11-28 08:22:24 +01:00
ldap_server.h s4:ldap_server: add call->wait_send/recv infrastructure 2017-06-15 09:13:22 +02:00
wscript_build ldap_server: Log access without a bind 2017-03-29 02:37:27 +02:00