CVE-2022-38023 s3:rpc_server/netlogon: make sure all _netr_LogonSamLogon*() calls...
authorSamuel Cabrero <scabrero@suse.de>
Thu, 22 Dec 2022 08:29:04 +0000 (09:29 +0100)
committerJule Anger <janger@samba.org>
Mon, 23 Jan 2023 09:06:16 +0000 (09:06 +0000)
commit431c730c6e773532dd2f9cace589a9028717d185
treebcf4962b5236f6658d44b27db457de052cfba33d
parent4975adda2c9e44ee5dc7043e64949d93cfd18f84
CVE-2022-38023 s3:rpc_server/netlogon: make sure all _netr_LogonSamLogon*() calls go through dcesrv_netr_check_schannel()

Some checks are also required for _netr_LogonSamLogonEx().

BUG: https://bugzilla.samba.org/show_bug.cgi?id=15240

Signed-off-by: Samuel Cabrero <scabrero@samba.org>
Reviewed-by: Andreas Schneider <asn@samba.org>
(cherry picked from commit ca07f4340ce58a7e940a1123888b7409176412f7)
source3/rpc_server/netlogon/srv_netlog_nt.c