]> git.ipfire.org Git - thirdparty/samba.git/commit
CVE-2018-1057: s4:dsdb/acl: changing dBCSPwd is only allowed with a control
authorRalph Boehme <slow@samba.org>
Thu, 15 Feb 2018 22:11:38 +0000 (23:11 +0100)
committerKarolin Seeger <kseeger@samba.org>
Mon, 12 Mar 2018 12:06:14 +0000 (13:06 +0100)
commit36639815f34c374f6d6cf002e19ba1754035e7d1
treedf197d89fd38bf25b7c282a5a9724ba13b6ec6c0
parente5b8c81d2951401691ea6a5e8082edf81354d1a1
CVE-2018-1057: s4:dsdb/acl: changing dBCSPwd is only allowed with a control

This is not strictly needed to fig bug 13272, but it makes sense to also
fix this while fixing the overall ACL checking logic.

Bug: https://bugzilla.samba.org/show_bug.cgi?id=13272

Signed-off-by: Ralph Boehme <slow@samba.org>
Reviewed-by: Stefan Metzmacher <metze@samba.org>
source4/dsdb/samdb/ldb_modules/acl.c