<?xml version="1.0" standalone="yes" ?>
<!DOCTYPE bugzilla SYSTEM "http://bugzilla.globus.org/bugzilla/bugzilla.dtd">

<bugzilla version="3.2.3"
          urlbase="http://bugzilla.globus.org/bugzilla/"
          maintainer="bacon@mcs.anl.gov"
>

    <bug>
          <bug_id>6368</bug_id>
          
          <creation_ts>2008-09-09 13:35</creation_ts>
          <short_desc>gss_add_oid_set_member can free wild data</short_desc>
          <delta_ts>2008-09-10 16:05:57</delta_ts>
          <reporter_accessible>1</reporter_accessible>
          <cclist_accessible>1</cclist_accessible>
          <classification_id>1</classification_id>
          <classification>Unclassified</classification>
          <product>GSI C</product>
          <component>Authentication</component>
          <version>4.2.0</version>
          <rep_platform>Macintosh</rep_platform>
          <op_sys>All</op_sys>
          <bug_status>RESOLVED</bug_status>
          <resolution>FIXED</resolution>
          
          
          
          <keywords>4.0.x</keywords>
          <priority>P3</priority>
          <bug_severity>normal</bug_severity>
          <target_milestone>4.2.1</target_milestone>
          
          
          
          <everconfirmed>1</everconfirmed>
          <reporter name="Joe Bester">bester@mcs.anl.gov</reporter>
          <assigned_to name="Joe Bester">bester@mcs.anl.gov</assigned_to>
          <cc>vwelch@uiuc.edu</cc>

      

      
          <long_desc isprivate="0">
            <who name="Joe Bester">bester@mcs.anl.gov</who>
            <bug_when>2008-09-09 13:35:49</bug_when>
            <thetext>If a null parameter is passed to gss_add_oid_set_member, the code will dereference an uninitialized pointer to a struct and free a member (CID #1899).

These cases where detected by coverity prevent run 2.</thetext>
          </long_desc>
          <long_desc isprivate="0">
            <who name="Joe Bester">bester@mcs.anl.gov</who>
            <bug_when>2008-09-10 16:05:57</bug_when>
            <thetext>Fixes committed to 4.2 branch, 4.0 branch, and trunk. Relevant CIDs marked as RESOLVED.</thetext>
          </long_desc>
      
      

    </bug>

</bugzilla>