6cf301dad9
Fixes the following security issues:
CVE-2018-16860: The checksum validation in the S4U2Self handler in the
embedded Heimdal KDC did not first confirm that the checksum was keyed,
allowing replacement of the requested target (client) principal.
For more details, see the advisory:
https://www.samba.org/samba/security/CVE-2018-16860.html
Signed-off-by: Peter Korsgaard <peter@korsgaard.com>
Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com>
(cherry picked from commit
|
||
---|---|---|
.. | ||
0001-libreplace-disable-libbsd-support.patch | ||
0002-Fix-compilation-of-Samba-4.7.4-with-disabled-ADS.patch | ||
0003-Fix-uClibc-build-on-64bit-platforms-by-including-std.patch | ||
0004-Disable-build-of-manpages-and-documentation.patch | ||
0005-test_regfio.c-include-stdint.h-before-cmoka.h.patch | ||
Config.in | ||
S91smb | ||
samba4-cache.txt | ||
samba4.hash | ||
samba4.mk |