]> git.ipfire.org Git - thirdparty/samba.git/commit
CVE-2016-2118: s4:rpc_server/dnsserver: require at least DCERPC_AUTH_LEVEL_INTEGRITY
authorStefan Metzmacher <metze@samba.org>
Thu, 10 Mar 2016 03:06:04 +0000 (04:06 +0100)
committerStefan Metzmacher <metze@samba.org>
Wed, 30 Mar 2016 02:08:19 +0000 (04:08 +0200)
commitddbcb1119e805328c045d14d5ebe8b4053eca612
tree1e37edf5ed6ec181e2ce35a4f6f548e91baa1a42
parent889162a9be1841506ff0056da5ac4162c703adeb
CVE-2016-2118: s4:rpc_server/dnsserver: require at least DCERPC_AUTH_LEVEL_INTEGRITY

This matches windows and prevents man in the middle downgrade attacks.

BUG: https://bugzilla.samba.org/show_bug.cgi?id=11616

Signed-off-by: Stefan Metzmacher <metze@samba.org>
Reviewed-by: Günther Deschner <gd@samba.org>
source4/rpc_server/dnsserver/dcerpc_dnsserver.c