1
0
mirror of https://github.com/samba-team/samba.git synced 2025-01-06 13:18:07 +03:00
samba-mirror/third_party/heimdal/lib
Andrew Bartlett a836bcf22c CVE-2022-37966 kdc: Implement new Kerberos session key behaviour since ENC_HMAC_SHA1_96_AES256_SK was added
ENC_HMAC_SHA1_96_AES256_SK is a flag introduced for by Microsoft in this
CVE to indicate that additionally, AES session keys are available. We
set the etypes available for session keys depending on the encryption
types that are supported by the principal.

BUG: https://bugzilla.samba.org/show_bug.cgi?id=15219

Pair-Programmed-With: Joseph Sutton <josephsutton@catalyst.net.nz>

Signed-off-by: Andrew Bartlett <abartlet@samba.org>
Signed-off-by: Joseph Sutton <josephsutton@catalyst.net.nz>
Reviewed-by: Stefan Metzmacher <metze@samba.org>

(similar to commit 975e43fc45)
[jsutton@samba.org Fixed knownfail conflicts]

[jsutton@samba.org Adapted to older KDC code; fixed knownfail conflicts]
2022-12-14 10:28:16 +00:00
..
asn1 CVE-2022-44640 HEIMDAL: asn1: invalid free in ASN.1 codec 2022-12-06 15:28:49 +00:00
base heimdal: Fix the 32-bit build on FreeBSD 2022-11-08 14:09:47 +00:00
com_err
gss_preauth
gssapi CVE-2022-3437 third_party/heimdal: Pass correct length to _gssapi_verify_pad() 2022-10-24 07:27:37 +02:00
hcrypto
hdb CVE-2022-37966 kdc: Implement new Kerberos session key behaviour since ENC_HMAC_SHA1_96_AES256_SK was added 2022-12-14 10:28:16 +00:00
heimdal
hx509
ipc
kadm5 third_party/heimdal: Introduce macro for common plugin structure elements 2022-11-08 13:11:15 +00:00
kafs
kdfs
krb5 CVE-2022-37966 third_party/heimdal: Fix error message typo 2022-12-14 10:28:16 +00:00
libedit
ntlm
otp
roken
sl
sqlite
vers
wind
Makefile.am
NTMakefile