summaryrefslogtreecommitdiff
Commit message (Expand)AuthorAgeFilesLines
* VERSION: Disable GIT_SNAPSHOT for the 4.10.18 release.samba-4.10.18v4-10-testv4-10-stableKarolin Seeger2020-09-181-1/+1
* WHATSNEW: Add release notes for Samba 4.10.18.Karolin Seeger2020-09-181-2/+111
* CVE-2020-1472(ZeroLogon): s4 torture rpc: repeated bytes in client challengeGary Lockyer2020-09-181-0/+335
* CVE-2020-1472(ZeroLogon): s4 torture rpc: Test empty machine acct pwdGary Lockyer2020-09-181-35/+29
* CVE-2020-1472(ZeroLogon): docs-xml: document 'server require schannel:COMPUTE...Stefan Metzmacher2020-09-181-15/+54
* CVE-2020-1472(ZeroLogon): s3:rpc_server/netlogon: log warnings about unsecure...Günther Deschner2020-09-181-4/+66
* CVE-2020-1472(ZeroLogon): s3:rpc_server/netlogon: support "server require sch...Günther Deschner2020-09-181-1/+6
* CVE-2020-1472(ZeroLogon): s3:rpc_server/netlogon: refactor dcesrv_netr_creds_...Günther Deschner2020-09-181-8/+35
* CVE-2020-1472(ZeroLogon): s4:rpc_server/netlogon: log warnings about unsecure...Stefan Metzmacher2020-09-181-3/+63
* CVE-2020-1472(ZeroLogon): s4:rpc_server/netlogon: support "server require sch...Stefan Metzmacher2020-09-181-1/+8
* CVE-2020-1472(ZeroLogon): s4:rpc_server/netlogon: refactor dcesrv_netr_creds_...Stefan Metzmacher2020-09-181-12/+33
* CVE-2020-1472(ZeroLogon): s3:rpc_server/netlogon: protect netr_ServerPassword...Jeremy Allison2020-09-181-6/+92
* CVE-2020-1472(ZeroLogon): s4:rpc_server/netlogon: protect netr_ServerPassword...Stefan Metzmacher2020-09-181-1/+59
* CVE-2020-1472(ZeroLogon): libcli/auth: reject weak client challenges in netlo...Stefan Metzmacher2020-09-182-1/+17
* CVE-2020-1472(ZeroLogon): libcli/auth: add netlogon_creds_is_random_challenge...Stefan Metzmacher2020-09-182-1/+23
* CVE-2020-1472(ZeroLogon): s4:rpc_server:netlogon: make use of netlogon_creds_...Stefan Metzmacher2020-09-181-2/+1
* CVE-2020-1472(ZeroLogon): s3:rpc_server:netlogon: make use of netlogon_creds_...Stefan Metzmacher2020-09-181-2/+1
* CVE-2020-1472(ZeroLogon): libcli/auth: make use of netlogon_creds_random_chal...Stefan Metzmacher2020-09-181-2/+1
* CVE-2020-1472(ZeroLogon): s4:torture/rpc: make use of netlogon_creds_random_c...Stefan Metzmacher2020-09-182-23/+13
* CVE-2020-1472(ZeroLogon): libcli/auth: add netlogon_creds_random_challenge()Stefan Metzmacher2020-09-182-0/+10
* util: fix build on AIX by fixing the order of replace.h includeBjoern Jacke2020-07-061-1/+1
* util: Reallocate larger buffer if getpwuid_r() returns ERANGEMartin Schwenke2020-07-061-0/+13
* util: Fix build on FreeBSD by avoiding NSS_BUFLEN_PASSWDMartin Schwenke2020-07-061-5/+22
* util: Simplify input validationMartin Schwenke2020-07-061-5/+4
* VERSION: Bump version up to 4.10.18.Karolin Seeger2020-07-021-1/+1
* Merge tag 'samba-4.10.17' into v4-10-testKarolin Seeger2020-07-0221-234/+1359
|\
| * VERSION: Diable GIT_SNAPSHOT for the 4.10.17 release.samba-4.10.17Karolin Seeger2020-06-251-1/+1
| * WHATSNEW: Add release notes for Samba 4.10.17.Karolin Seeger2020-06-251-2/+86
| * CVE-2020-10760 dsdb: Add tests for paged_results and VLV over the Global Cata...Andrew Bartlett2020-06-252-66/+107
| * CVE-2020-10760 dsdb: Ensure a proper talloc tree for saved controlsAndrew Bartlett2020-06-252-0/+15
| * CVE-2020-14303: s4 nbt: fix busy loop on empty UDP packetGary Lockyer2020-06-252-2/+16
| * CVE-2020-14303 Ensure an empty packet will not DoS the NBT serverAndrew Bartlett2020-06-252-0/+20
| * CVE-2020-10745: ndr/dns-utils: prepare for NBT compatibilityDouglas Bagnall2020-06-257-77/+49
| * CVE-2020-10745: dns_util/push: forbid names longer than 255 bytesDouglas Bagnall2020-06-252-2/+9
| * CVE-2020-10745: ndr_dns: do not allow consecutive dotsDouglas Bagnall2020-06-253-2/+6
| * CVE-2020-10745: ndr/dns_utils: correct a commentDouglas Bagnall2020-06-251-1/+1
| * CVE-2020-10745: ndr_dns: move ndr_push_dns_string core into sharable functionDouglas Bagnall2020-06-254-75/+99
| * CVE-2020-10745: librpc/tests: cmocka tests of dns and ndr stringsDouglas Bagnall2020-06-254-0/+255
| * CVE-2020-10745: pytests: hand-rolled invalid dns/nbt packet testsDouglas Bagnall2020-06-253-0/+222
| * ldb: Bump version to 1.5.8ldb-1.5.8Gary Lockyer2020-06-254-1/+286
| * CVE-2020-10730: lib ldb: Check if ldb_lock_backend_callback called twiceGary Lockyer2020-06-251-1/+8
| * CVE-2020-10730: s4 dsdb vlv_pagination: Prevent repeat call of ldb_module_doneGary Lockyer2020-06-251-12/+49
| * CVE-2020-10730: s4 dsdb paged_results: Prevent repeat call of ldb_module_doneGary Lockyer2020-06-251-9/+34
| * CVE-2020-10730: dsdb: Ban the combination of paged_results and VLVAndrew Bartlett2020-06-251-0/+10
| * CVE-2020-10730: dsdb: Fix crash when vlv and paged_results are combinedAndrew Bartlett2020-06-251-0/+4
| * CVE-2020-10730: selftest: Add test to show that VLV and paged_results are inc...Andrew Bartlett2020-06-252-0/+50
| * CVE-2020-10730: vlv: Another workaround for mixing ASQ and VLVAndrew Bartlett2020-06-251-4/+15
| * CVE-2020-10730: selftest: Add test to confirm VLV interaction with ASQAndrew Bartlett2020-06-251-0/+27
| * CVE-2020-10730: vlv: Do not re-ASQ search the results of an ASQ search with VLVAndrew Bartlett2020-06-251-0/+11
| * CVE-2020-10730: vlv: Use strcmp(), not strncmp() checking the NULL terminated...Andrew Bartlett2020-06-251-2/+2