[19213] in Kerberos_V5_Development

home help back first fref pref prev next nref lref last post

memleak in gss_add_cred_with_password in krb 1.12.1 and 1.13.1

daemon@ATHENA.MIT.EDU (Sorin Manolache)
Thu Jun 18 12:13:59 2015

Message-ID: <5582EE34.6070005@gmail.com>
Date: Thu, 18 Jun 2015 18:13:40 +0200
From: Sorin Manolache <sorinm@gmail.com>
MIME-Version: 1.0
To: krbdev@mit.edu
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Errors-To: krbdev-bounces@mit.edu

Hello,

I think I've found a memory leak in gss_add_cred_with_password, in krb5 
1.12.1 and 1.13.1.

The gss_OID_set target_mechs in gss_add_cred_with_password 
(lib/gssapi/mechglue/g_acquire_cred_with_pw.c) is not released if the 
function returns GSS_S_COMPLETE.

Sorin
_______________________________________________
krbdev mailing list             krbdev@mit.edu
https://mailman.mit.edu/mailman/listinfo/krbdev

home help back first fref pref prev next nref lref last post