A windows application using the SSPI attempts to establish a kerberos connection to a process running on Unix and calls gss_accept_sec_context. gss_accept_sec_context() causes core dump
On the Solaris side gss_accept_sec_context() is called with the following arguments:
gssStatus = gss_accept_sec_context(
&minStatus,
pContext,
prov->gssCredHandle,
&inTok,
GSS_C_NO_CHANNEL_BINDINGS,
&client,
NULL,
&outTok,
&retFlags,
&timeRem,
pDeleg);
Product defect # 24403
* gssapi: Fixed a segfault in krb5_very_ap_req2 where we were not checking for a
valid keyblock entry.
Upgrade to QAS 4.0.3 Maintenance release
Here is information on what is fixed in the release and a link to the download in the Resolution section:
https://support.quest.com/Search/SolutionDetail.aspx?id=SOL82767
© 2024 One Identity LLC. ALL RIGHTS RESERVED. Feedback Terms of Use Privacy Cookie Preference Center