[11564] in Kerberos-V5-bugs
[krbdev.mit.edu #6734] SVN Commit
daemon@ATHENA.MIT.EDU (Tom Yu via RT)
Fri May 28 14:41:48 2010
Mail-followup-to: rt@krbdev.mit.edu
mail-copies-to: never
From: "Tom Yu via RT" <rt-comment@krbdev.MIT.EDU>
In-Reply-To: <rt-6734@krbdev.mit.edu>
Message-ID: <rt-6734-32903.6.39420910349394@krbdev.mit.edu>
To: "'AdminCc of krbdev.mit.edu Ticket #6734'":;"'AdminCc of krbdev.mit.edu Ticket #6734'":;@MIT.EDU
Date: Fri, 28 May 2010 14:41:46 -0400 (EDT)
Reply-To: rt-comment@krbdev.MIT.EDU
MIME-Version: 1.0
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Errors-To: krb5-bugs-bounces@mit.edu
pull up r24102 from trunk
------------------------------------------------------------------------
r24102 | ghudson | 2010-05-24 22:44:45 -0400 (Mon, 24 May 2010) | 11 lines
ticket: 6734
subject: FAST negotiation could erroneously succeed
target_version: 1.8.2
tags: pullup
When FAST negotiation is performed against an older KDC
(rep->enc_part2->flags & TKT_FLG_ENC_PA_REP not set),
krb5int_fast_verify_nego did not set the value of *fast_avail, causing
stack garbage to be used in init_creds_step_reply. Initialize
*fast_avail at the beginning of the function per coding practices.
http://src.mit.edu/fisheye/changelog/krb5/?cs=24111
Commit By: tlyu
Revision: 24111
Changed Files:
U branches/krb5-1-8/src/lib/krb5/krb/fast.c
_______________________________________________
krb5-bugs mailing list
krb5-bugs@mit.edu
https://mailman.mit.edu/mailman/listinfo/krb5-bugs