b12b5169d7
(MITKRB5-SA-2011-003, bnc#671717) CVE-2011-0284 - Fix vulnerability to a double-free condition in KDC daemon (MITKRB5-SA-2011-003, bnc#671717) CVE-2011-0284 OBS-URL: https://build.opensuse.org/package/show/network/krb5?expand=0&rev=41
14 lines
554 B
Plaintext
14 lines
554 B
Plaintext
Index: krb5-1.8.1/src/kdc/do_as_req.c
|
|
===================================================================
|
|
--- krb5-1.8.1.orig/src/kdc/do_as_req.c
|
|
+++ krb5-1.8.1/src/kdc/do_as_req.c
|
|
@@ -784,6 +784,8 @@ prepare_error_as (struct kdc_request_sta
|
|
pad->contents = td[size]->data;
|
|
pad->length = td[size]->length;
|
|
pa[size] = pad;
|
|
+ td[size]->data = NULL;
|
|
+ td[size]->length = 0;
|
|
}
|
|
krb5_free_typed_data(kdc_context, td);
|
|
}
|