summaryrefslogtreecommitdiff
path: root/curl-config.in
diff options
context:
space:
mode:
authorKamil Dudka <kdudka@redhat.com>2012-12-03 13:17:50 +0100
committerKamil Dudka <kdudka@redhat.com>2012-12-03 13:34:36 +0100
commit68d2830ee9df50961e481e81c1baaa290c33f03e (patch)
tree51712227f97f4072ed44d99b01eaa1dcea3df28d /curl-config.in
parent2ecdd486837d47eafb9861ea48519ed3b57d667b (diff)
downloadcurl-68d2830ee9df50961e481e81c1baaa290c33f03e.tar.gz
nss: prevent NSS from crashing on client auth hook failure
Although it is not explicitly stated in the documentation, NSS uses *pRetCert and *pRetKey even if the client authentication hook returns a failure. Namely, if we destroy *pRetCert without clearing *pRetCert afterwards, NSS destroys the certificate once again, which causes a double free. Reported by: Bob Relyea
Diffstat (limited to 'curl-config.in')
0 files changed, 0 insertions, 0 deletions