[22727] in Kerberos

home help back first fref pref prev next nref lref last post

Re: Kerberized telnetd: -a valid option & eight char limit on

daemon@ATHENA.MIT.EDU (Sam Hartman)
Fri Oct 22 13:56:36 2004

To: Donn Cave <donn@u.washington.edu>
From: Sam Hartman <hartmans@mit.edu>
Date: Fri, 22 Oct 2004 13:55:07 -0400
In-Reply-To: <donn-0A0E43.09394122102004@gnus01.u.washington.edu> (Donn
 Cave's message of "Fri, 22 Oct 2004 09:39:41 -0700")
Message-ID: <tslacue7i4k.fsf@cz.mit.edu>
MIME-Version: 1.0
Content-Type: text/plain; charset=us-ascii
cc: kerberos@mit.edu
Errors-To: kerberos-bounces@mit.edu

Actually, as I recall, MIT's telnetd will call MIT's login.krb5.
There do seem to be several username size limits in that program, all
based on UT_NAMESIZE.

Looking at Solaris, I think that will get set to 8.

I suspect that we don't handle the case where utmpx has a longer name
size than utmp very well.

I'm not sure what the fix is off the top of my head; forcing
UT_NAMESIZE to 32 might just work, but you would need to check and
make sure it didn't create a buffer overflow.

________________________________________________
Kerberos mailing list           Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos

home help back first fref pref prev next nref lref last post