[krbdev.mit.edu #8768] git commit

Greg Hudson via RT rt-comment at KRBDEV-PROD-APP-1.mit.edu
Mon Jan 7 01:58:10 EST 2019


Fix double-close in ksu get_authorized_princ_names

If list_union() fails due to an allocation failure, then close_time()
will attempt to fclose users_fp and login_fp a second time.

This bug was originally introduced in commit
be95b52c2d0c21b1fe92f9f90166fc2fa8eecc95, and has been present in
every krb5 release since 1.1.

(cherry picked from commit 0b8c6f3e1e8e561aa56a7d4e2171320119991dae)

https://github.com/krb5/krb5/commit/fc87a96b29dd548b54eff6a1d0abc155a02fb497
Author: Robbie Harwood <rharwood at redhat.com>
Committer: Greg Hudson <ghudson at mit.edu>
Commit: fc87a96b29dd548b54eff6a1d0abc155a02fb497
Branch: krb5-1.15
 src/clients/ksu/heuristic.c |    1 -
 1 files changed, 0 insertions(+), 1 deletions(-)



More information about the krb5-bugs mailing list