CVE-2023-0614 dsdb: Add DSDB_MARK_REQ_UNTRUSTED
authorAndrew Bartlett <abartlet@samba.org>
Thu, 2 Mar 2023 03:31:17 +0000 (16:31 +1300)
committerJule Anger <janger@samba.org>
Mon, 20 Mar 2023 09:03:51 +0000 (10:03 +0100)
commit7e69ecbdc3a48a93b0ba31c3349456c49389d722
tree0257b9e23e7dd332b63a16005d285a909a0c3258
parentad4c220411233d6cbd19885a8a0a91bbec762619
CVE-2023-0614 dsdb: Add DSDB_MARK_REQ_UNTRUSTED

This will allow our dsdb helper search functions to mark the new
request as untrusted, forcing read ACL evaluation (per current behaviour).

BUG: https://bugzilla.samba.org/show_bug.cgi?id=15270

Signed-off-by: Andrew Bartlett <abartlet@samba.org>
Reviewed-by: Joseph Sutton <josephsutton@catalyst.net.nz>
source4/dsdb/common/util.c
source4/dsdb/common/util.h