]> git.ipfire.org Git - thirdparty/samba.git/commit
CVE-2022-37966 kdc: Assume trust objects support AES by default
authorJoseph Sutton <josephsutton@catalyst.net.nz>
Mon, 21 Nov 2022 22:32:34 +0000 (11:32 +1300)
committerStefan Metzmacher <metze@samba.org>
Tue, 13 Dec 2022 13:07:30 +0000 (13:07 +0000)
commit4bb50c868c8ed14372cb7d27e53cdaba265fc33d
treeb0637a2baa79b13e9ef8e45c35e2ac9650b913fd
parent975e43fc45531fdea14b93a3b1529b3218a177e6
CVE-2022-37966 kdc: Assume trust objects support AES by default

As part of matching the behaviour of Windows, assume that trust objects
support AES256, but not RC4, if not specified otherwise.

BUG: https://bugzilla.samba.org/show_bug.cgi?id=15219
BUG: https://bugzilla.samba.org/show_bug.cgi?id=15237

Signed-off-by: Joseph Sutton <josephsutton@catalyst.net.nz>
Reviewed-by: Stefan Metzmacher <metze@samba.org>
Reviewed-by: Andrew Bartlett <abartlet@samba.org>
source4/kdc/db-glue.c