[krbdev.mit.edu #6901] SVN Commit
Tom Yu via RT
rt-comment at krbdev.mit.edu
Thu Apr 14 18:17:12 EDT 2011
back-port r24878 for 1.7-branch
------------------------------------------------------------------------
r24878 | tlyu | 2011-04-13 14:43:37 -0400 (Wed, 13 Apr 2011) | 11 lines
ticket: 6899
tags: pullup
target_version: 1.9.1
Fix the sole case in process_chpw_request() where a return could occur
without allocating the data pointer in the response. This prevents a
later free() of an invalid pointer in kill_tcp_or_rpc_connection().
Also initialize rep->data to NULL in process_chpw_request() and clean
up *response in dispatch() as an additional precaution.
http://src.mit.edu/fisheye/changelog/krb5/?cs=24881
Commit By: tlyu
Revision: 24881
Changed Files:
U branches/krb5-1-7/src/kadmin/server/network.c
U branches/krb5-1-7/src/kadmin/server/schpw.c
More information about the krb5-bugs
mailing list