URL:
  <http://savannah.nongnu.org/support/?108456>

                 Summary: PAM module does not check whether strdup allocation
succeeded
                 Project: OATH Toolkit
            Submitted by: eehakkin
            Submitted on: Sat 14 Dec 2013 02:40:12 PM GMT
                Category: None
                Priority: 5 - Normal
                Severity: 3 - Normal
                  Status: None
                 Privacy: Public
             Assigned to: None
        Originator Email: 
             Open/Closed: Open
         Discussion Lock: Any
        Operating System: None

    _______________________________________________________

Details:

The attached patch adds strdup return value checks to the pam_oath PAM module.
This fixes the module to exit with PAM_BUF_ERR error code and prevents false
success and NULL pointer dereference.



    _______________________________________________________

File Attachments:


-------------------------------------------------------
Date: Sat 14 Dec 2013 02:40:12 PM GMT  Name: strdup-retval-check.patch  Size:
787B   By: eehakkin

<http://savannah.nongnu.org/support/download.php?file_id=29920>

    _______________________________________________________

Reply to this item at:

  <http://savannah.nongnu.org/support/?108456>

_______________________________________________
  Message sent via/by Savannah
  http://savannah.nongnu.org/


Reply via email to