[krbdev.mit.edu #6642] SVN Commit

Tom Yu via RT rt-comment at krbdev.mit.edu
Thu Jan 14 14:27:34 EST 2010


Pull up r23652 from trunk.

Test case for integer underflow in AES and RC4 decryption.
[MITKRB5-SA-2009-004, CVE-2009-4212] krb5-1.8 branch isn't vulnerable,
but include this test anyway.

 ------------------------------------------------------------------------
 r23652 | ghudson | 2010-01-12 16:59:58 -0500 (Tue, 12 Jan 2010) | 2 lines

 Add test program for decryption of overly short buffers.

http://src.mit.edu/fisheye/changelog/krb5/?cs=23660
Commit By: tlyu
Revision: 23660
Changed Files:
U   branches/krb5-1-8/src/lib/crypto/crypto_tests/Makefile.in
A   branches/krb5-1-8/src/lib/crypto/crypto_tests/t_short.c




More information about the krb5-bugs mailing list