]> git.ipfire.org Git - thirdparty/krb5.git/commitdiff
Fix a leak when parsing PKINIT cert SANs with NSS
authorNalin Dahyabhai <nalin@dahyabhai.net>
Tue, 9 Jul 2013 22:29:41 +0000 (18:29 -0400)
committerGreg Hudson <ghudson@mit.edu>
Mon, 15 Jul 2013 15:14:50 +0000 (11:14 -0400)
When retrieving the list of a certificate's subjectAltName values, we
weren't freeing some of the temporary memory we used.

src/plugins/preauth/pkinit/pkinit_crypto_nss.c

index 4b0245c9b2c540455ecf2b9e3f339bf7acb4675b..47006ec7e61fc851d6bf1c847aa0773552c0e489 100644 (file)
@@ -4389,6 +4389,7 @@ cert_retrieve_cert_sans(krb5_context context,
             break;
         }
     }
+    PORT_FreeArena(pool, PR_TRUE);
 
     return 0;
 }