From 522fa7fd9a0d2b45dfedcc1fd3dbd702ada4ff19 Mon Sep 17 00:00:00 2001 From: alexpeshkoff Date: Wed, 17 Mar 2010 10:08:32 +0000 Subject: [PATCH] Backported fix for CORE-2928: Buffer overflow in gsec --- src/utilities/gsec/security.epp | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/src/utilities/gsec/security.epp b/src/utilities/gsec/security.epp index 52b69341f6..37f192fb51 100644 --- a/src/utilities/gsec/security.epp +++ b/src/utilities/gsec/security.epp @@ -371,7 +371,7 @@ SSHORT SECURITY_exec_line(ISC_STATUS* isc_status, *(io_user_data->sys_user_name) = '\0'; strcpy(io_user_data->user_name, U.USER_NAME); strcpy(io_user_data->group_name, U.GROUP_NAME); - strcpy(io_user_data->password, U.PASSWD); + io_user_data->password[0] = 0; strcpy(io_user_data->first_name, U.FIRST_NAME); strcpy(io_user_data->middle_name, U.MIDDLE_NAME); strcpy(io_user_data->last_name, U.LAST_NAME); @@ -401,7 +401,7 @@ SSHORT SECURITY_exec_line(ISC_STATUS* isc_status, *(io_user_data->sys_user_name) = '\0'; strcpy(io_user_data->user_name, U.USER_NAME); strcpy(io_user_data->group_name, U.GROUP_NAME); - strcpy(io_user_data->password, U.PASSWD); + io_user_data->password[0] = 0; strcpy(io_user_data->first_name, U.FIRST_NAME); strcpy(io_user_data->middle_name, U.MIDDLE_NAME); strcpy(io_user_data->last_name, U.LAST_NAME);