diff options
author | Joseph Sutton <josephsutton@catalyst.net.nz> | 2022-06-02 17:11:08 +1200 |
---|---|---|
committer | Douglas Bagnall <dbagnall@samba.org> | 2022-07-28 22:47:37 +0000 |
commit | d07641fc5a7d2fa323e6d6fe3223da3a6d682405 (patch) | |
tree | c57fa85e6fded3b6221e962324b2e6d445159804 /selftest | |
parent | f9831259b9f6a49b9e1a7be75198d60374cdef2f (diff) | |
download | samba-d07641fc5a7d2fa323e6d6fe3223da3a6d682405.tar.gz |
CVE-2022-32743 s4:rpc_server/netlogon: Remove dNSHostName prefix check
This check is not exhaustive (it does not check the suffix of the
dNSHostName), and should be covered by a validated write check in
acl_modify().
BUG: https://bugzilla.samba.org/show_bug.cgi?id=14833
Signed-off-by: Joseph Sutton <josephsutton@catalyst.net.nz>
Reviewed-by: Douglas Bagnall <douglas.bagnall@catalyst.net.nz>
Diffstat (limited to 'selftest')
-rw-r--r-- | selftest/knownfail.d/netlogon-dns-host-name | 5 |
1 files changed, 5 insertions, 0 deletions
diff --git a/selftest/knownfail.d/netlogon-dns-host-name b/selftest/knownfail.d/netlogon-dns-host-name index 0164a7c4cd1..d6a8aa27803 100644 --- a/selftest/knownfail.d/netlogon-dns-host-name +++ b/selftest/knownfail.d/netlogon-dns-host-name @@ -1,4 +1,6 @@ ^samba.tests.py_credentials.samba.tests.py_credentials.PyCredentialsTests.test_set_dns_hostname_invalid_suffix\( +^samba.tests.py_credentials.samba.tests.py_credentials.PyCredentialsTests.test_set_dns_hostname_invalid_validated_write\( +^samba.tests.py_credentials.samba.tests.py_credentials.PyCredentialsTests.test_set_dns_hostname_invalid_write_property\( ^samba.tests.py_credentials.samba.tests.py_credentials.PyCredentialsTests.test_set_dns_hostname_with_flag\( ^samba4.rpc.netlogon on ncacn_ip_tcp with bigendian.netlogon.GetDomainInfo\( ^samba4.rpc.netlogon on ncacn_ip_tcp with seal,padcheck.netlogon.GetDomainInfo\( @@ -6,6 +8,9 @@ ^samba4.rpc.netlogon on ncacn_np with bigendian.netlogon.GetDomainInfo\( ^samba4.rpc.netlogon on ncacn_np with seal,padcheck.netlogon.GetDomainInfo\( ^samba4.rpc.netlogon on ncacn_np with validate.netlogon.GetDomainInfo\( +^samba4.rpc.netlogon on ncalrpc with bigendian.netlogon.GetDomainInfo\( +^samba4.rpc.netlogon on ncalrpc with seal,padcheck.netlogon.GetDomainInfo\( +^samba4.rpc.netlogon on ncalrpc with validate.netlogon.GetDomainInfo\( ^samba4.rpc.netlogon with bigendian.netlogon.GetDomainInfo\( ^samba4.rpc.netlogon with seal,padcheck.netlogon.GetDomainInfo\( ^samba4.rpc.netlogon with validate.netlogon.GetDomainInfo\( |