[1171] in Kerberos-V5-bugs
krb5b4pl3: kdc/do_as_req.c assumes that realm is null-terminated
daemon@ATHENA.MIT.EDU (Jonathan I. Kamens)
Tue Mar 14 14:44:26 1995
From: "Jonathan I. Kamens" <jik@cam.ov.com>
Date: Tue, 14 Mar 1995 14:47:30 -0500
To: krb5-bugs@MIT.EDU
--- kdc/do_as_req.c 1995/03/09 15:05:12 1.1
+++ kdc/do_as_req.c 1995/03/09 15:06:21
@@ -173,7 +173,8 @@
* site-specific policiy file....
*/
pwreq = 0;
- sprintf(cpw_service, "%s@%s", "changepw/kerberos",
+ sprintf(cpw_service, "%s@%*s", "changepw/kerberos",
+ krb5_princ_realm(request->server)->length,
krb5_princ_realm(request->server)->data);
if (strcmp(sname, cpw_service) == 0) pwreq++;