1
0
mirror of https://github.com/samba-team/samba.git synced 2024-12-25 23:21:54 +03:00
samba-mirror/source3
Gary Lockyer 3149ea0a8a CVE-2020-10704: libcli ldap_message: Add search size limits to ldap_decode
Add search request size limits to ldap_decode calls.

The ldap server uses the smb.conf variable
"ldap max search request size" which defaults to 250Kb.
For cldap the limit is hard coded as 4096.

Credit to OSS-Fuzz

REF: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=20454
BUG: https://bugzilla.samba.org/show_bug.cgi?id=14334

Signed-off-by: Gary Lockyer <gary@catalyst.net.nz>
Reviewed-by: Andrew Bartlett <abartlet@samba.org>
2020-05-04 02:59:32 +00:00
..
auth auth: Fix CID 1458418 Null pointer dereferences (REVERSE_INULL) 2020-02-14 12:15:32 +00:00
build source3/build/charset.py: update to handle waf 2.0.4 2018-09-05 06:37:23 +02:00
client smbclient: Also allow four digit years in utimes command 2020-04-16 17:27:40 +00:00
exports
groupdb smbdotconf: mark "set primary group script" with substitution="1" 2019-11-27 10:25:36 +00:00
include smbd: add previous version timestamp to struct smb_filename 2020-04-29 16:39:41 +00:00
intl lib: Remove "tdb based replacement for gettext" 2019-05-22 05:59:13 +00:00
lib CVE-2020-10704: lib util asn1: Add ASN.1 max tree depth 2020-05-04 02:59:31 +00:00
libads s3:libads: Fix ads_get_upn() 2020-04-06 17:35:39 +00:00
libgpo/gpext Spelling fixes s/emtpy/empty/ 2019-09-01 22:21:26 +00:00
libnet krb5_wrap: move source3/libads/krb5_errs.c to lib/krb5_wrap/krb5_errs.c 2020-02-10 16:32:37 +00:00
librpc s3/librpc/crypto: Fix double free with unresolved credential cache 2020-04-14 22:55:51 +00:00
libsmb CVE-2020-10704: lib util asn1: Add ASN.1 max tree depth 2020-05-04 02:59:31 +00:00
locale Spelling fixes s/Mirgate/Migrate/ 2019-09-01 22:21:26 +00:00
locking smbd: move files_struct.use_ofd_locks to a bitfield 2020-04-03 19:05:44 +00:00
modules s3: smbd: Add a dirfsp parameter to directory_has_default_acl(). 2020-04-30 07:33:41 +00:00
nmbd smbdotconf: mark "wins hook" with substitution="1" 2019-11-27 10:25:36 +00:00
param CVE-2020-10704: libcli ldap_message: Add search size limits to ldap_decode 2020-05-04 02:59:32 +00:00
passdb py3: Remove #define PyInt_FromLong PyLong_FromLong 2020-03-23 19:12:43 +00:00
printing smbd: move files_struct.is_directory to a bitfield 2020-04-03 19:05:44 +00:00
profile s3:profile: Allow profile subsystem to use SHA1 in FIPS mode 2019-07-09 13:31:46 +00:00
registry source3/registry/reg_parse.h: typo fixes 2019-10-31 00:43:37 +00:00
rpc_client s3:rpclient: simplify rpc_tstream_next_vector() 2020-02-06 14:57:41 +00:00
rpc_server s3: smbd: Cleanup - move the function get_nt_acl_no_snum() to it's user module. 2020-04-30 07:33:41 +00:00
rpcclient rpcclient: Ask for minimal permissions for SID and name lookups 2020-03-11 08:09:32 +00:00
script s3: torture: Call the smbtorture3 SMB2-SACL test. 2020-04-21 18:37:39 +00:00
selftest s4:torture: Convert samba3.raw.mkdir test to smb2 2020-04-28 19:46:32 +00:00
services
smbd smbd: use is_lease_stat_open() in delay_for_oplock() 2020-04-30 21:10:43 +00:00
torture CVE-2020-10704: lib util asn1: Add ASN.1 max tree depth 2020-05-04 02:59:31 +00:00
utils libsmb: Move clirap2.c to utils/ 2020-04-18 04:12:48 +00:00
web
winbindd s3:rpc_server: Improve local dispatching 2020-04-08 22:23:05 +00:00
.clang_complete
.dmallocrc
.indent.pro
Doxyfile
mainpage.dox
smbadduser.in
wscript VFS: Add vfs_widelinks module. 2020-04-09 19:40:34 +00:00
wscript_build torture3: Test ctdb_req_send/recv 2020-04-28 09:08:40 +00:00
wscript_configure_system_ncurses source3/wscript_configure_system_ncurses: update to handle waf 2.0.4 2018-09-05 06:37:24 +02:00