help-gsasl
[Top][All Lists]
Advanced

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: Potential bug in win32 binary version?


From: Simon Josefsson
Subject: Re: Potential bug in win32 binary version?
Date: Tue, 15 Jan 2008 10:15:57 +0100
User-agent: Gnus/5.110007 (No Gnus v0.7) Emacs/22.1 (gnu/linux)

Simon Josefsson <address@hidden> writes:

> Thanks!  Still, it is a bug in gsasl to not check the return value from
> gc_nonce.  I suspect it did return a error value here about /dev/random
> not being present.  This can be a security problem so I think I need to
> write a brief security advisory about it, and do a new release.

For reference, the patch to fix this problem has been applied:

http://git.savannah.gnu.org/gitweb/?p=gsasl.git;a=commitdiff;h=5764322e7a759efac49852b6d74ed0dae2cc29f2

/Simon




reply via email to

[Prev in Thread] Current Thread [Next in Thread]