SIGN-OFF passdb: Avoid passing domain directly into an ldap filter
authorAndrew Bartlett <abartlet@samba.org>
Thu, 21 Aug 2014 03:20:15 +0000 (15:20 +1200)
committerAndrew Bartlett <abartlet@samba.org>
Thu, 3 Dec 2015 01:49:37 +0000 (14:49 +1300)
commit5fe482797bd6b66009cf31b6ea3bbb5c67d319f1
treef3be9b21afde66d9b15b51b8e7d7037856291943
parent3bbd8d3614af641535ab0925303ad07c03c4e094
SIGN-OFF passdb: Avoid passing domain directly into an ldap filter

While harmless here due to the odd way the search was done as a subtree search on the only valid DN, elsewhere this could have been a security issue.

Change-Id: Id78840234926afc7bf56a567d5be60bb8d983c57
Pair-programmed-with: Garming Sam <garming@catalyst.net.nz>
TODO Signed-off-by: Garming Sam <garming@catalyst.net.nz>
TODO Signed-off-by: Andrew Bartlett <abartlet@samba.org>
Reviewed-by: Stefan Metzmacher <metze@samba.org>
source3/passdb/pdb_ldap.c