URL:
<http://savannah.nongnu.org/support/?108456>
Summary: PAM module does not check whether strdup allocation
succeeded
Project: OATH Toolkit
Submitted by: eehakkin
Submitted on: Sat 14 Dec 2013 02:40:12 PM GMT
Category: None
Priority: 5 - Normal
Severity: 3 - Normal
Status: None
Privacy: Public
Assigned to: None
Originator Email:
Open/Closed: Open
Discussion Lock: Any
Operating System: None
_______________________________________________________
Details:
The attached patch adds strdup return value checks to the pam_oath PAM module.
This fixes the module to exit with PAM_BUF_ERR error code and prevents false
success and NULL pointer dereference.
_______________________________________________________
File Attachments:
-------------------------------------------------------
Date: Sat 14 Dec 2013 02:40:12 PM GMT Name: strdup-retval-check.patch Size:
787B By: eehakkin
<http://savannah.nongnu.org/support/download.php?file_id=29920>
_______________________________________________________
Reply to this item at:
<http://savannah.nongnu.org/support/?108456>
_______________________________________________
Message sent via/by Savannah
http://savannah.nongnu.org/