CVE-2021-3738 s4:rpc_server/lsa: make use of dcesrv_samdb_connect_as_user() helper
authorStefan Metzmacher <metze@samba.org>
Thu, 5 Aug 2021 12:24:25 +0000 (14:24 +0200)
committerJoseph Sutton <josephsutton@catalyst.net.nz>
Thu, 4 Nov 2021 03:58:13 +0000 (16:58 +1300)
commit952ab2b82cd38969f7131721b3b7f542a65067dd
treef42820fa320d6ecf25a8a7d3e1c9d1518ce4e096
parentdbddd1cbcb169720c65a755ecf077d3727d63bb4
CVE-2021-3738 s4:rpc_server/lsa: make use of dcesrv_samdb_connect_as_user() helper

This avoids a crash that's triggered by windows clients using
handles from OpenPolicy[2]() on across multiple connections within
an association group.

BUG: https://bugzilla.samba.org/show_bug.cgi?id=14468

Signed-off-by: Stefan Metzmacher <metze@samba.org>
Reviewed-by: Andrew Bartlett <abartlet@samba.org>
source4/rpc_server/lsa/lsa_init.c