[krbdev.mit.edu #5585] SVN Commit

Tom Yu via RT rt-comment at krbdev.mit.edu
Tue Jun 26 14:08:28 EDT 2007


pointer.  This may lead to execution of arbitrary code.

CVE-2007-2443/VU#365313: The RPC library can write past the end of a
stack buffer.  This may (but is unlikely to) lead to execution of
arbitrary code.


Commit By: tlyu



Revision: 19636
Changed Files:
_U  trunk/
U   trunk/src/lib/rpc/svc_auth_gssapi.c
U   trunk/src/lib/rpc/svc_auth_unix.c




More information about the krb5-bugs mailing list