CVE-2018-1057: s4:dsdb/samdb: define DSDB_CONTROL_PASSWORD_ACL_VALIDATION_OID control
authorRalph Boehme <slow@samba.org>
Fri, 16 Feb 2018 14:30:13 +0000 (15:30 +0100)
committerKarolin Seeger <kseeger@samba.org>
Mon, 12 Mar 2018 12:06:14 +0000 (13:06 +0100)
commit4adcba5f6aecacde5b405bdd1bdc662d303137e3
tree7ce635a22d95818422c532d3145db2b9d94fc016
parentbb43ab081a539b088afb8c82658d2d8f3715bae8
CVE-2018-1057: s4:dsdb/samdb: define DSDB_CONTROL_PASSWORD_ACL_VALIDATION_OID control

Will be used to pass "user password change" vs "password reset" from the
ACL to the password_hash module, ensuring both modules treat the request
identical.

Bug: https://bugzilla.samba.org/show_bug.cgi?id=13272

Signed-off-by: Ralph Boehme <slow@samba.org>
Reviewed-by: Stefan Metzmacher <metze@samba.org>
source4/dsdb/samdb/samdb.h
source4/libcli/ldap/ldap_controls.c
source4/setup/schema_samba4.ldif