pull up r19913 from trunk
authorTom Yu <tlyu@mit.edu>
Wed, 5 Sep 2007 21:26:16 +0000 (21:26 +0000)
committerTom Yu <tlyu@mit.edu>
Wed, 5 Sep 2007 21:26:16 +0000 (21:26 +0000)
commit9d90c70837d744d44f495a339d77acd01339e9a3
treec81153106175d9a0949bd63bdff460d4d9a267b2
parent5b598fa4bc6a4bf0df9b9c0ed2fdda0fd7af2c59
pull up r19913 from trunk

 r19913@cathode-dark-space:  tlyu | 2007-09-04 14:52:56 -0400
 ticket: new
 subject: fix CVE-2007-3999 svc_auth_gss.c buffer overflow
 target_version: 1.6.3
 tags: pullup
 component: krb5-libs

 Make sure svcauth_gss_validate adequately checks oa->oa_length prior
 to copying into rpcbuf.

ticket: 5706

git-svn-id: svn://anonsvn.mit.edu/krb5/branches/krb5-1-6@19924 dc483132-0cff-0310-8789-dd5450dbe970
src/lib/rpc/svc_auth_gss.c