summaryrefslogtreecommitdiff
Commit message (Expand)AuthorAgeFilesLines
* libsmb: Harden smbc_readdir_internal() against returns from malicious servers.Jeremy Allison2018-08-142-8/+51
* libsmb: Ensure smbc_urlencode() can't overwrite passed in buffer.Jeremy Allison2018-08-141-2/+7
* CVE-2018-10919 tests: Add extra test for dirsync deleted object corner-caseTim Beale2018-08-141-26/+131
* CVE-2018-10919 acl_read: Fix unauthorized attribute access via searchesTim Beale2018-08-143-16/+247
* CVE-2018-10919 acl_read: Flip the logic in the dirsync checkTim Beale2018-08-141-10/+7
* CVE-2018-10919 acl_read: Small refactor to aclread_callback()Tim Beale2018-08-141-14/+17
* CVE-2018-10919 acl_read: Split access_mask logic out into helper functionTim Beale2018-08-141-19/+35
* CVE-2018-10919 security: Fix checking of object-specific CONTROL_ACCESS rightsTim Beale2018-08-141-0/+10
* CVE-2018-10919 tests: test ldap searches for non-existent attributes.Gary Lockyer2018-08-141-0/+9
* CVE-2018-10919 tests: Add test case for object visibility with limited rightsTim Beale2018-08-142-0/+69
* CVE-2018-10919 tests: Add tests for guessing confidential attributesTim Beale2018-08-143-0/+929
* CVE-2018-10919 security: Add more comments to the object-specific access checksTim Beale2018-08-141-8/+22
* CVE-2018-10919 security: Move object-specific access checks into separate fun...Tim Beale2018-08-141-27/+59
* CVE-2018-1140 dns: Add a test to trigger the LDB casefolding issue on invalid...Kai Blin2018-08-142-0/+90
* Release LDB 1.4.2 for CVE-2018-1140ldb-1.4.2Andrew Bartlett2018-08-144-1/+284
* CVE-2018-1140 ldb: Add tests for search add and rename with a bad dn= DNAndrew Bartlett2018-08-141-0/+156
* CVE-2018-1140 ldb_tdb: Check for DN validity in add, rename and searchAndrew Bartlett2018-08-142-1/+42
* CVE-2018-1140 ldb_tdb: Ensure the dn in distinguishedName= is valid before useAndrew Bartlett2018-08-141-0/+9
* CVE-2018-1140 ldb: Check for ldb_dn_get_casefold() failure in ldb_sqliteAndrew Bartlett2018-08-141-0/+3
* CVE-2018-1140 Add NULL check for ldb_dn_get_casefold() in ltdb_index_dn_attr()Andrej Gessel2018-08-141-0/+9
* CVE-2018-1139 libcli/auth: Do not allow ntlmv1 over SMB1 when it is disabled ...Günther Deschner2018-08-143-4/+3
* CVE-2018-1139 selftest: verify whether ntlmv1 can be used via SMB1 when it is...Günther Deschner2018-08-141-1/+1
* CVE-2018-1139 s3-utils: use enum ntlm_auth_level in ntlm_password_check().Günther Deschner2018-08-141-2/+4
* CVE-2018-1139 libcli/auth: fix debug messages in hash_password_check()Günther Deschner2018-08-141-4/+4
* CVE-2018-1139 libcli/auth: Add initial tests for ntlm_password_check()Andrew Bartlett2018-08-144-0/+430
* s3/smbd: Ensure quota code is only called when quota support detectedNoel Power2018-08-132-0/+10
* Shorten description in vfs_linux_xfs_sgid manualJustin Stephenson2018-08-131-1/+1
* s3:waf: Install eventlogadm to /usr/sbinAndreas Schneider2018-08-131-1/+2
* systemd: Only start smb when network interfaces are upOleksandr Natalenko2018-08-131-1/+2
* ctdb-eventd: Fix CID 1438155Amitay Isaacs2018-08-131-1/+1
* ctdb: Fix a cut&paste errorVolker Lendecke2018-08-131-1/+1
* s3/utils: fix regression where specifying -Unetbios/root worksNoel Power2018-08-131-1/+2
* s3/smbd: allow set quota for non root user (when built with --enable-selftest)Noel Power2018-08-131-1/+1
* s3/script/tests: Add simple (smb1 & smb2) get/set/list tests for smbcquotasNoel Power2018-08-135-0/+454
* s3/script/test: modify existing smbcquota test to use SMB2 in addition to SMB1.Noel Power2018-08-131-2/+12
* s3/smbd: smb2 server implementation for query get/set info.Noel Power2018-08-133-3/+120
* s3/smbd: adjust smb1 server to use idl structs and generated ndr push/pull funcsNoel Power2018-08-133-291/+402
* s3/libsmb: adjust smb2 code for new idl structs & generated ndr push/pull funcs.Noel Power2018-08-131-28/+58
* s3/libsmb: adjust smb1 cli code to use idl structs and ndr push/pull funcs.Noel Power2018-08-133-180/+224
* librpc/idl Add some query [getset]info quota related structuresNoel Power2018-08-133-0/+60
* s3/smbd: Don't stat when doing a quota operation (as it's a fake file)Noel Power2018-08-131-1/+2
* s3/libsmb: Avoid potential smbpanic calling parse_user_quota_list.Noel Power2018-08-131-0/+8
* s3/lib: Fix misleading typo in debug messageNoel Power2018-08-131-1/+1
* s3-tldap: do not install test_tldapGünther Deschner2018-08-131-1/+2
* VERSION: Bump version up to 4.9.0rc3...Karolin Seeger2018-07-311-2/+2
* VERSION: Disable GIT_SNAPSHOT for the 4.9.0rc2 release.samba-4.9.0rc2Karolin Seeger2018-07-311-1/+1
* WHATSNEW: Add release notes for Samba 4.9.0rc2.Karolin Seeger2018-07-311-1/+36
* ctdb-docs: Update documentation for "ctdb event" commandMartin Schwenke2018-07-311-47/+48
* ctdb-event: Implement event tool "script list" commandMartin Schwenke2018-07-3112-0/+335
* ctdb-event: Change event-tool script enable/disable to chmod file directlyMartin Schwenke2018-07-311-32/+19