[krbdev.mit.edu #1604] CVS Commit

Tom Yu via RT rt-comment at krbdev.mit.edu
Fri Jun 13 17:43:14 EDT 2003


	* init_sec_context.c (krb5_gss_init_sec_context): Free
	default_enctypes to avoid leaking returned value from
	krb5_get_tgs_ktypes.

	* k5unseal.c (kg_unseal_v1): Explicitly set token.value to NULL if
	token.length == 0, to avoid spurious uninitialized memory
	references when calling memcpy() with a zero length.


To generate a diff of this commit:



	cvs diff -r1.222 -r1.223 krb5/src/lib/gssapi/krb5/ChangeLog
	cvs diff -r1.69 -r1.70 krb5/src/lib/gssapi/krb5/init_sec_context.c
	cvs diff -r1.28 -r1.29 krb5/src/lib/gssapi/krb5/k5unseal.c 


More information about the krb5-bugs mailing list