- (djm) OpenBSD CVS Sync
commitcdeef6e4e601abed6be736d49df16e32811fc722
authordjm <djm>
Wed, 31 Aug 2005 09:46:26 +0000 (31 09:46 +0000)
committerdjm <djm>
Wed, 31 Aug 2005 09:46:26 +0000 (31 09:46 +0000)
tree883d5b7da7850720ce7bb9613566b7897c4184ce
parent4e64fd1436e86a6e625289e7c233cbec4c83daa6
 - (djm) OpenBSD CVS Sync
   - djm@cvs.openbsd.org 2005/08/30 22:08:05
     [gss-serv.c sshconnect2.c]
     destroy credentials if krb5_kuserok() call fails. Stops credentials being
     delegated to users who are not authorised for GSSAPIAuthentication when
     GSSAPIDeletegateCredentials=yes and another authentication mechanism
     succeeds; bz#1073 reported by paul.moore AT centrify.com, fix by
     simon AT sxw.org.uk, tested todd@ biorn@ jakob@; ok deraadt@
ChangeLog
gss-serv.c
sshconnect2.c