From d107e99829fcb297ecd2a9de05f9de0ccd91add6 Mon Sep 17 00:00:00 2001 From: dim Date: Fri, 16 Dec 2011 00:48:53 +0000 Subject: [PATCH] In contrib/telnet/libtelnet/sra.c, use the correct number of bytes to zero the password buffer. MFC after: 1 week git-svn-id: http://svn0.us-east.freebsd.org/base/head/contrib/telnet@228559 ccf9f872-aa2e-dd11-9fc8-001c23d0bc1f --- libtelnet/sra.c | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/libtelnet/sra.c b/libtelnet/sra.c index 1940485..4a75968 100644 --- a/libtelnet/sra.c +++ b/libtelnet/sra.c @@ -303,7 +303,7 @@ sra_reply(Authenticator *ap, unsigned char *data, int cnt) goto enc_user; } /* encode password */ - memset(pass,0,sizeof(pass)); + memset(pass,0,256); telnet_gets("Password: ",pass,255,0); pk_encode(pass,xpass,&ck); /* send it off */