diff options
| author | Barry Jaspan <bjaspan@mit.edu> | 1996-09-11 21:28:43 +0000 |
|---|---|---|
| committer | Barry Jaspan <bjaspan@mit.edu> | 1996-09-11 21:28:43 +0000 |
| commit | c6fbdba2d20542c3f09d0f3497d6fbdab74ac032 (patch) | |
| tree | d52426b3085da68422756920c976e3cf2c6f7e3e /src/kadmin | |
| parent | 887b4e35081259b02fe1c374d4f9cf4db44cedb1 (diff) | |
| download | krb5-c6fbdba2d20542c3f09d0f3497d6fbdab74ac032.tar.gz krb5-c6fbdba2d20542c3f09d0f3497d6fbdab74ac032.tar.xz krb5-c6fbdba2d20542c3f09d0f3497d6fbdab74ac032.zip | |
* login.c: fix a security-threating race condition: chown'ing the
ccache to the user can be bad if the user can delete the file
first and make it a symlink to something else. The solution is to
re-create the ccache after login as setuid() to the user.
git-svn-id: svn://anonsvn.mit.edu/krb5/trunk@9084 dc483132-0cff-0310-8789-dd5450dbe970
Diffstat (limited to 'src/kadmin')
0 files changed, 0 insertions, 0 deletions
