mirror of
https://git.hardenedbsd.org/hardenedbsd/HardenedBSD.git
synced 2024-12-27 21:44:34 +01:00
When a Solaris10 client does an NFS mount using krb5i or krb5p, the
server would crash because the Solaris10 client would attempt to use Sun's NFSACL protocol, which FreeBSD doesn't support. When the server generated the error reply via svcerr_noprog(), it would cause a crash because it would try and wrap a NULL reply. According to RFC2203, no wrapping is required for error cases. This one line change avoids wrapping of NULL replies. Reviewed by: dfr Approved by: kib (mentor)
This commit is contained in:
parent
cfed37836e
commit
aae53bae73
Notes:
svn2git
2020-12-20 02:59:44 +00:00
svn path=/head/; revision=194133
@ -1442,7 +1442,7 @@ svc_rpc_gss_wrap(SVCAUTH *auth, struct mbuf **mp)
|
||||
cc = (struct svc_rpc_gss_cookedcred *) auth->svc_ah_private;
|
||||
client = cc->cc_client;
|
||||
if (client->cl_state != CLIENT_ESTABLISHED
|
||||
|| cc->cc_service == rpc_gss_svc_none) {
|
||||
|| cc->cc_service == rpc_gss_svc_none || *mp == NULL) {
|
||||
return (TRUE);
|
||||
}
|
||||
|
||||
|
Loading…
Reference in New Issue
Block a user