CVE-2022-38023 s4:rpc_server/netlogon: defer downgrade check until we found the accou...
authorStefan Metzmacher <metze@samba.org>
Fri, 25 Nov 2022 09:31:08 +0000 (10:31 +0100)
committerAndreas Schneider <asn@samba.org>
Fri, 13 Jan 2023 14:10:46 +0000 (15:10 +0100)
commit886878d18d22eb4a2f3b63663e0ffe284ed9788b
treef9688bdcd98e5e998b87c4fbc94cd53275a0d189
parent3e43111a1417414b545fcc46a72e701cf6e71c59
CVE-2022-38023 s4:rpc_server/netlogon: defer downgrade check until we found the account in our SAM

We'll soon make it possible to use 'reject md5 servers:CLIENTACCOUNT$ = no',
which means we'll need use the account name from our SAM.

BUG: https://bugzilla.samba.org/show_bug.cgi?id=15240

Signed-off-by: Stefan Metzmacher <metze@samba.org>
Reviewed-by: Andrew Bartlett <abartlet@samba.org>
Reviewed-by: Ralph Boehme <slow@samba.org>
(cherry picked from commit b09f51eefc311bbb1525efd1dc7b9a837f7ec3c2)
source4/rpc_server/netlogon/dcerpc_netlogon.c