Skip to content

GitLab

  • Menu
Projects Groups Snippets
  • Help
    • Help
    • Support
    • Community forum
    • Submit feedback
    • Contribute to GitLab
    • Switch to GitLab Next
  • Sign in / Register
  • Samba Samba
  • Project information
    • Project information
    • Activity
    • Labels
    • Members
  • Repository
    • Repository
    • Files
    • Commits
    • Branches
    • Tags
    • Contributors
    • Graph
    • Compare
    • Locked Files
  • Merge requests 137
    • Merge requests 137
  • CI/CD
    • CI/CD
    • Pipelines
    • Jobs
    • Schedules
  • Deployments
    • Deployments
    • Environments
    • Releases
  • Packages & Registries
    • Packages & Registries
    • Container Registry
  • Analytics
    • Analytics
    • Value stream
    • CI/CD
    • Code review
    • Insights
    • Issue
    • Repository
  • External wiki
    • External wiki
  • Activity
  • Graph
  • Jobs
  • Commits
Collapse sidebar
  • The Samba Team
  • SambaSamba
  • Merge requests
  • !2272

CVE-2020-25717: s3-auth: fix MIT Realm regression

  • Review changes

  • Download
  • Email patches
  • Plain diff
Closed Ralph Böhme requested to merge samba-team/devel/samba:slow-CVE-2020-25717-MIT-regression into master Nov 26, 2021
  • Overview 10
  • Commits 1
  • Pipelines 2
  • Changes 1

This looks like a regression introduced by the recent security fixes. This commit should hopefully fixes it.

As a quick solution it might be possible to use the username map script based on the example in https://bugzilla.samba.org/show_bug.cgi?id=14901#c0. We're not sure this behaves identical, but it might work in the standalone server case.

Reported-at: https://lists.samba.org/archive/samba/2021-November/238720.html

Edited Dec 03, 2021 by Ralph Böhme
Assignee
Assign to
Reviewer
Request review from
Time tracking
Source branch: slow-CVE-2020-25717-MIT-regression