Blame SOURCES/nfs-utils-2.3.3-gssd-memoryleak.patch

3fbdf3
diff --git a/utils/gssd/krb5_util.c b/utils/gssd/krb5_util.c
3fbdf3
index eb993aab..26e51edf 100644
3fbdf3
--- a/utils/gssd/krb5_util.c
3fbdf3
+++ b/utils/gssd/krb5_util.c
3fbdf3
@@ -459,7 +459,7 @@ gssd_get_single_krb5_cred(krb5_context context,
3fbdf3
 	if (ccache)
3fbdf3
 		krb5_cc_close(context, ccache);
3fbdf3
 	krb5_free_cred_contents(context, &my_creds);
3fbdf3
-	free(k5err);
3fbdf3
+	krb5_free_string(context, k5err);
3fbdf3
 	return (code);
3fbdf3
 }
3fbdf3
 
3fbdf3
@@ -698,7 +698,7 @@ gssd_search_krb5_keytab(krb5_context context, krb5_keytab kt,
3fbdf3
 				 "we failed to unparse principal name: %s\n",
3fbdf3
 				 k5err);
3fbdf3
 			k5_free_kt_entry(context, kte);
3fbdf3
-			free(k5err);
3fbdf3
+			krb5_free_string(context, k5err);
3fbdf3
 			k5err = NULL;
3fbdf3
 			continue;
3fbdf3
 		}
3fbdf3
@@ -745,7 +745,7 @@ gssd_search_krb5_keytab(krb5_context context, krb5_keytab kt,
3fbdf3
 	if (retval < 0)
3fbdf3
 		retval = 0;
3fbdf3
   out:
3fbdf3
-	free(k5err);
3fbdf3
+	krb5_free_string(context, k5err);
3fbdf3
 	return retval;
3fbdf3
 }
3fbdf3
 
3fbdf3
@@ -774,7 +774,7 @@ find_keytab_entry(krb5_context context, krb5_keytab kt,
3fbdf3
 	int tried_all = 0, tried_default = 0, tried_upper = 0;
3fbdf3
 	krb5_principal princ;
3fbdf3
 	const char *notsetstr = "not set";
3fbdf3
-	char *adhostoverride;
3fbdf3
+	char *adhostoverride = NULL;
3fbdf3
 
3fbdf3
 
3fbdf3
 	/* Get full target hostname */
3fbdf3
@@ -802,7 +802,6 @@ find_keytab_entry(krb5_context context, krb5_keytab kt,
3fbdf3
 				adhostoverride);
3fbdf3
 	        /* No overflow: Windows cannot handle strings longer than 19 chars */
3fbdf3
 	        strcpy(myhostad, adhostoverride);
3fbdf3
-		free(adhostoverride);
3fbdf3
 	} else {
3fbdf3
 	        strcpy(myhostad, myhostname);
3fbdf3
 	        for (i = 0; myhostad[i] != 0; ++i) {
3fbdf3
@@ -811,6 +810,8 @@ find_keytab_entry(krb5_context context, krb5_keytab kt,
3fbdf3
 	        myhostad[i] = '$';
3fbdf3
 	        myhostad[i+1] = 0;
3fbdf3
 	}
3fbdf3
+	if (adhostoverride)
3fbdf3
+		krb5_free_string(context, adhostoverride);
3fbdf3
 
3fbdf3
 	if (!srchost) {
3fbdf3
 		retval = get_full_hostname(myhostname, myhostname, sizeof(myhostname));
3fbdf3
@@ -901,7 +902,7 @@ find_keytab_entry(krb5_context context, krb5_keytab kt,
3fbdf3
 				k5err = gssd_k5_err_msg(context, code);
3fbdf3
 				printerr(1, "%s while building principal for '%s'\n",
3fbdf3
 					 k5err, spn);
3fbdf3
-				free(k5err);
3fbdf3
+				krb5_free_string(context, k5err);
3fbdf3
 				k5err = NULL;
3fbdf3
 				continue;
3fbdf3
 			}
3fbdf3
@@ -911,7 +912,7 @@ find_keytab_entry(krb5_context context, krb5_keytab kt,
3fbdf3
 				k5err = gssd_k5_err_msg(context, code);
3fbdf3
 				printerr(3, "%s while getting keytab entry for '%s'\n",
3fbdf3
 					 k5err, spn);
3fbdf3
-				free(k5err);
3fbdf3
+				krb5_free_string(context, k5err);
3fbdf3
 				k5err = NULL;
3fbdf3
 				/*
3fbdf3
 				 * We tried the active directory machine account
3fbdf3
@@ -960,7 +961,7 @@ out:
3fbdf3
 		k5_free_default_realm(context, default_realm);
3fbdf3
 	if (realmnames)
3fbdf3
 		krb5_free_host_realm(context, realmnames);
3fbdf3
-	free(k5err);
3fbdf3
+	krb5_free_string(context, k5err);
3fbdf3
 	return retval;
3fbdf3
 }
3fbdf3
 
3fbdf3
@@ -1223,7 +1224,7 @@ gssd_destroy_krb5_machine_creds(void)
3fbdf3
 			printerr(0, "WARNING: %s while resolving credential "
3fbdf3
 				    "cache '%s' for destruction\n", k5err,
3fbdf3
 				    ple->ccname);
3fbdf3
-			free(k5err);
3fbdf3
+			krb5_free_string(context, k5err);
3fbdf3
 			k5err = NULL;
3fbdf3
 			continue;
3fbdf3
 		}
3fbdf3
@@ -1232,13 +1233,13 @@ gssd_destroy_krb5_machine_creds(void)
3fbdf3
 			k5err = gssd_k5_err_msg(context, code);
3fbdf3
 			printerr(0, "WARNING: %s while destroying credential "
3fbdf3
 				    "cache '%s'\n", k5err, ple->ccname);
3fbdf3
-			free(k5err);
3fbdf3
+			krb5_free_string(context, k5err);
3fbdf3
 			k5err = NULL;
3fbdf3
 		}
3fbdf3
 	}
3fbdf3
 	krb5_free_context(context);
3fbdf3
   out:
3fbdf3
-	free(k5err);
3fbdf3
+	krb5_free_string(context, k5err);
3fbdf3
 }
3fbdf3
 
3fbdf3
 /*
3fbdf3
@@ -1321,7 +1322,7 @@ out_free_kt:
3fbdf3
 out_free_context:
3fbdf3
 	krb5_free_context(context);
3fbdf3
 out:
3fbdf3
-	free(k5err);
3fbdf3
+	krb5_free_string(context, k5err);
3fbdf3
 	return retval;
3fbdf3
 }
3fbdf3