The asn1_decode_generaltime() function can free an uninitialized pointer if asn1buf_remove_charstring() fails. http://src.mit.edu/fisheye/changelog/krb5/?cs=22176 Commit By: tlyu Revision: 22176 Changed Files: U trunk/src/lib/krb5/asn.1/asn1_decode.c U trunk/src/tests/asn.1/krb5_decode_test.c