CVE-2022-0336: s4/dsdb/samldb: Don't return early when an SPN is re-added to an object
authorJoseph Sutton <josephsutton@catalyst.net.nz>
Mon, 17 Jan 2022 23:02:45 +0000 (12:02 +1300)
committerStefan Metzmacher <metze@samba.org>
Mon, 31 Jan 2022 15:27:37 +0000 (15:27 +0000)
commit1a5dc817c0c9379bbaab14c676681b42b0039a3c
tree189518345248bc78f19a24b152e888d2ff1b3e7e
parentc58ede44f382bd0125f761f0479c8d48156be400
CVE-2022-0336: s4/dsdb/samldb: Don't return early when an SPN is re-added to an object

If an added SPN already exists on an object, we still want to check the
rest of the element values for conflicts.

BUG: https://bugzilla.samba.org/show_bug.cgi?id=14950

Signed-off-by: Joseph Sutton <josephsutton@catalyst.net.nz>
Reviewed-by: Douglas Bagnall <douglas.bagnall@catalyst.net.nz>
selftest/knownfail.d/ldap_spn
source4/dsdb/samdb/ldb_modules/samldb.c