diff options
author | Jakub Hrozek <jhrozek@redhat.com> | 2011-10-16 21:17:59 +0200 |
---|---|---|
committer | Stephen Gallagher <sgallagh@redhat.com> | 2011-10-17 14:37:53 -0400 |
commit | 243f25814e2e2ba3b1462a39fd7ede7dfe9064a3 (patch) | |
tree | e101c07dbade6b5b649a87c0edd2c7499345c870 | |
parent | 9077c3ebec92454d8ed949491c4ca89ed6cdf75a (diff) | |
download | sssd-243f25814e2e2ba3b1462a39fd7ede7dfe9064a3.tar.gz sssd-243f25814e2e2ba3b1462a39fd7ede7dfe9064a3.tar.xz sssd-243f25814e2e2ba3b1462a39fd7ede7dfe9064a3.zip |
Sanitize DN in sysdb_get_direct_parents
-rw-r--r-- | src/db/sysdb_search.c | 8 |
1 files changed, 7 insertions, 1 deletions
diff --git a/src/db/sysdb_search.c b/src/db/sysdb_search.c index 9c386cae6..6386795c6 100644 --- a/src/db/sysdb_search.c +++ b/src/db/sysdb_search.c @@ -899,6 +899,7 @@ errno_t sysdb_get_direct_parents(TALLOC_CTX *mem_ctx, { errno_t ret; const char *dn; + char *sanitized_dn; struct ldb_dn *basedn; static const char *group_attrs[] = { SYSDB_NAME, NULL }; const char *member_filter; @@ -927,9 +928,14 @@ errno_t sysdb_get_direct_parents(TALLOC_CTX *mem_ctx, goto done; } + ret = sss_filter_sanitize(tmp_ctx, dn, &sanitized_dn); + if (ret != EOK) { + goto done; + } + member_filter = talloc_asprintf(tmp_ctx, "(&(%s=%s)(%s=%s))", SYSDB_OBJECTCLASS, SYSDB_GROUP_CLASS, - SYSDB_MEMBER, dn); + SYSDB_MEMBER, sanitized_dn); if (!member_filter) { ret = ENOMEM; goto done; |