CVE-2020-25722 kdc: Do not honour a request for a 3-part SPN (ending in our domain...
authorAndrew Bartlett <abartlet@samba.org>
Mon, 4 Oct 2021 02:18:34 +0000 (15:18 +1300)
committerJule Anger <janger@samba.org>
Tue, 9 Nov 2021 19:45:34 +0000 (19:45 +0000)
commit4888e198110a811a1815e2fdffc7562fe979f477
treee46f2ac4ee65e679557e91f4d86d0692e6742c6b
parent49a13f0fc942d1cfb767d5b6bf49d62241d52046
CVE-2020-25722 kdc: Do not honour a request for a 3-part SPN (ending in our domain/realm) unless a DC

BUG: https://bugzilla.samba.org/show_bug.cgi?id=14776

Signed-off-by: Andrew Bartlett <abartlet@samba.org>
Reviewed-by: Joseph Sutton <josephsutton@catalyst.net.nz>
selftest/knownfail_heimdal_kdc
selftest/knownfail_mit_kdc
source4/kdc/db-glue.c