]> git.ipfire.org Git - thirdparty/samba.git/commit
CVE-2020-10704: ldapserver tests: Limit search request sizes
authorGary Lockyer <gary@catalyst.net.nz>
Tue, 14 Apr 2020 01:32:32 +0000 (13:32 +1200)
committerKarolin Seeger <kseeger@samba.org>
Tue, 21 Apr 2020 08:21:09 +0000 (10:21 +0200)
commitd8ec11ea9f334f6ff1baab9c19883fb53856ca9b
tree90c70f5ec264b1039b97a9d3133a91b7f0dad85d
parent8e7b910f68752514e405fbc0916c4e9e7dfb1bde
CVE-2020-10704: ldapserver tests: Limit search request sizes

Add tests to ensure that overly long (> 256000 bytes) LDAP search
requests are rejected.

Credit to OSS-Fuzz

REF: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=20454
BUG: https://bugzilla.samba.org/show_bug.cgi?id=14334

Signed-off-by: Gary Lockyer <gary@catalyst.net.nz>
Reviewed-by: Andrew Bartlett <abartlet@samba.org>
python/samba/tests/ldap_raw.py [new file with mode: 0644]
selftest/knownfail.d/ldap_raw [new file with mode: 0644]
source4/selftest/tests.py