[2822] in Kerberos-V5-bugs
krb5-libs/501: [daemon@ATHENA.MIT.EDU : krb4 library use of krb5_init_context()]
daemon@ATHENA.MIT.EDU (Greg Hudson)
Wed Nov 19 18:26:09 1997
Resent-From: gnats@rt-11.MIT.EDU (GNATS Management)
Resent-To: krb5-unassigned@RT-11.MIT.EDU
Resent-Reply-To: krb5-bugs@MIT.EDU, Greg Hudson <ghudson@MIT.EDU>
Date: Wed, 19 Nov 1997 18:25:08 -0500
From: Greg Hudson <ghudson@MIT.EDU>
To: bugs@RT-11.MIT.EDU
>Number: 501
>Category: krb5-libs
>Synopsis: Return value not checked for krb5_init_context()
>Confidential: no
>Severity: serious
>Priority: medium
>Responsible: krb5-unassigned
>State: open
>Class: sw-bug
>Submitter-Id: unknown
>Arrival-Date: Wed Nov 19 18:26:01 EST 1997
>Last-Modified:
>Originator: Greg Hudson
>Organization:
MIT
>Release: 1.0
>Environment:
System: IRIX oliver 6.3 12161207 IP32
>Description:
There are three occurrances of krb5_init_context() in libkrb4. None of
them check their return value. If the call fails, then you tend to get
a core dump.
>How-To-Repeat:
Run a krb4-linked program with no /etc/krb5.conf file on your system.
>Fix:
None provided, but it's trivial. However, it's arguably also a bug that
krb4 programs fail if you don't have an /etc/krb5.conf.
--[15684]--
------- End forwarded transaction
>Audit-Trail:
>Unformatted:
Grrr. Why does /mit/krb5/arch/sgi_53/sbin/krb5-send-pr send to bugs?
------- Forwarded transaction
[15684] daemon@ATHENA.MIT.EDU (ghudson@MIT.EDU) Athena Bugs 11/19/97 18:15 (32 lines)
Subject: krb4 library use of krb5_init_context()
From: <ghudson@MIT.EDU>
Date: Wed, 19 Nov 1997 18:15:26 -0500
To: bugs@MIT.EDU
Reply-To: ghudson@MIT.EDU