[krbdev.mit.edu #6642] SVN Commit
Tom Yu via RT
rt-comment at krbdev.mit.edu
Thu Jan 14 14:27:34 EST 2010
Pull up r23652 from trunk.
Test case for integer underflow in AES and RC4 decryption.
[MITKRB5-SA-2009-004, CVE-2009-4212] krb5-1.8 branch isn't vulnerable,
but include this test anyway.
------------------------------------------------------------------------
r23652 | ghudson | 2010-01-12 16:59:58 -0500 (Tue, 12 Jan 2010) | 2 lines
Add test program for decryption of overly short buffers.
http://src.mit.edu/fisheye/changelog/krb5/?cs=23660
Commit By: tlyu
Revision: 23660
Changed Files:
U branches/krb5-1-8/src/lib/crypto/crypto_tests/Makefile.in
A branches/krb5-1-8/src/lib/crypto/crypto_tests/t_short.c
More information about the krb5-bugs
mailing list