[sr #107804] privkey memory leak in server handshake

Dan Winship INVALID.NOREPLY at gnu.org
Sat Sep 17 16:41:54 CEST 2011


URL:
  <http://savannah.gnu.org/support/?107804>

                 Summary: privkey memory leak in server handshake
                 Project: GnuTLS
            Submitted by: danw
            Submitted on: Sat 17 Sep 2011 02:41:53 PM GMT
                Category: None
                Priority: 5 - Normal
                Severity: 3 - Normal
                  Status: None
                 Privacy: Public
             Assigned to: None
        Originator Email: 
             Open/Closed: Open
         Discussion Lock: Any
        Operating System: None

    _______________________________________________________

Details:

in auth_cert.c, call_get_cert_callback() passes a newly-allocated
gnutls_privkey_t to _gnutls_selected_certs_set(), but later on,
_gnutls_selected_certs_deinit() just sets the key to NULL without freeing it.

both 2.12 and git master





    _______________________________________________________

Reply to this item at:

  <http://savannah.gnu.org/support/?107804>

_______________________________________________
  Message sent via/by Savannah
  http://savannah.gnu.org/





More information about the Gnutls-devel mailing list