[krbdev.mit.edu #6734] SVN Commit

Tom Yu via RT rt-comment at krbdev.mit.edu
Fri May 28 14:41:46 EDT 2010


pull up r24102 from trunk

 ------------------------------------------------------------------------
 r24102 | ghudson | 2010-05-24 22:44:45 -0400 (Mon, 24 May 2010) | 11 lines

 ticket: 6734
 subject: FAST negotiation could erroneously succeed
 target_version: 1.8.2
 tags: pullup

 When FAST negotiation is performed against an older KDC
 (rep->enc_part2->flags & TKT_FLG_ENC_PA_REP not set),
 krb5int_fast_verify_nego did not set the value of *fast_avail, causing
 stack garbage to be used in init_creds_step_reply.  Initialize
 *fast_avail at the beginning of the function per coding practices.

http://src.mit.edu/fisheye/changelog/krb5/?cs=24111
Commit By: tlyu
Revision: 24111
Changed Files:
U   branches/krb5-1-8/src/lib/krb5/krb/fast.c




More information about the krb5-bugs mailing list