1
0
mirror of https://github.com/samba-team/samba.git synced 2024-12-24 21:34:56 +03:00
samba-mirror/libcli/ldap
Gary Lockyer bac809348a CVE-2020-10704 libcli ldap: Check search request lengths.
Check the search request lengths against the limits passed to
ldap_decode.

Credit to OSS-Fuzz

REF: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=20454
BUG: https://bugzilla.samba.org/show_bug.cgi?id=14334

Signed-off-by: Gary Lockyer <gary@catalyst.net.nz>
Reviewed-by: Andrew Bartlett <abartlet@samba.org>

Autobuild-User(master): Gary Lockyer <gary@samba.org>
Autobuild-Date(master): Mon May  4 04:40:10 UTC 2020 on sn-devel-184
2020-05-04 04:40:10 +00:00
..
tests CVE-2020-10704: libcli ldap_message: Add search size limits to ldap_decode 2020-05-04 02:59:32 +00:00
ldap_errors.h
ldap_message.c CVE-2020-10704 libcli ldap: Check search request lengths. 2020-05-04 04:40:10 +00:00
ldap_message.h CVE-2020-10704: libcli ldap_message: Add search size limits to ldap_decode 2020-05-04 02:59:32 +00:00
ldap_ndr.c typo: mplementation => implementation 2016-05-06 05:03:16 +02:00
ldap_ndr.h typo: mplementation => implementation 2016-05-06 05:03:16 +02:00
wscript_build CVE-2020-10704: libcli ldap: test recursion depth in ldap_decode_filter_tree 2020-05-04 02:59:32 +00:00