17 lines
504 B
Plaintext
17 lines
504 B
Plaintext
$NetBSD: patch-CVE-2014-4343,v 1.1 2014/08/28 22:23:05 tez Exp $
|
|
|
|
fix for cve-2014-4343 from:
|
|
https://github.com/krb5/krb5/commit/f18ddf5d82de0ab7591a36e465bc24225776940f
|
|
|
|
|
|
--- lib/gssapi/spnego/spnego_mech.c
|
|
+++ lib/gssapi/spnego/spnego_mech.c
|
|
@@ -796,7 +796,6 @@ init_ctx_reselect(OM_uint32 *minor_status, spnego_gss_ctx_id_t sc,
|
|
OM_uint32 tmpmin;
|
|
size_t i;
|
|
|
|
- generic_gss_release_oid(&tmpmin, &sc->internal_mech);
|
|
gss_delete_sec_context(&tmpmin, &sc->ctx_handle,
|
|
GSS_C_NO_BUFFER);
|
|
|