mirror of
https://github.com/samba-team/samba.git
synced 2024-12-24 21:34:56 +03:00
3149ea0a8a
Add search request size limits to ldap_decode calls. The ldap server uses the smb.conf variable "ldap max search request size" which defaults to 250Kb. For cldap the limit is hard coded as 4096. Credit to OSS-Fuzz REF: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=20454 BUG: https://bugzilla.samba.org/show_bug.cgi?id=14334 Signed-off-by: Gary Lockyer <gary@catalyst.net.nz> Reviewed-by: Andrew Bartlett <abartlet@samba.org>
19 lines
514 B
XML
19 lines
514 B
XML
<samba:parameter name="ldap max search request size"
|
|
context="G"
|
|
type="integer"
|
|
xmlns:samba="http://www.samba.org/samba/DTD/samba-doc">
|
|
<description>
|
|
<para>
|
|
This parameter specifies the maximum permitted size (in bytes)
|
|
for an LDAP search request.
|
|
</para>
|
|
|
|
<para>
|
|
If the request size exceeds this limit the request will be
|
|
rejected.
|
|
</para>
|
|
</description>
|
|
<value type="default">256000</value>
|
|
<value type="example">4194304</value>
|
|
</samba:parameter>
|