[krbdev.mit.edu #1604] CVS Commit 
    Tom Yu via RT 
    rt-comment at krbdev.mit.edu
       
    Fri Jun 13 17:43:14 EDT 2003
    
    
  
	* init_sec_context.c (krb5_gss_init_sec_context): Free
	default_enctypes to avoid leaking returned value from
	krb5_get_tgs_ktypes.
	* k5unseal.c (kg_unseal_v1): Explicitly set token.value to NULL if
	token.length == 0, to avoid spurious uninitialized memory
	references when calling memcpy() with a zero length.
To generate a diff of this commit:
	cvs diff -r1.222 -r1.223 krb5/src/lib/gssapi/krb5/ChangeLog
	cvs diff -r1.69 -r1.70 krb5/src/lib/gssapi/krb5/init_sec_context.c
	cvs diff -r1.28 -r1.29 krb5/src/lib/gssapi/krb5/k5unseal.c 
    
    
More information about the krb5-bugs
mailing list