--- mod_auth_kerb-5.0-rc6/spnegokrb5/der_get.c +++ mod_auth_kerb-5.0-rc6/spnegokrb5/der_get.c @@ -151,7 +151,7 @@ der_get_oid (const unsigned char *p, siz if (len < 1) return ASN1_OVERRUN; - data->components = malloc(len * sizeof(*data->components)); + data->components = malloc((len + 1) * sizeof(*data->components)); if (data->components == NULL && len != 0) return ENOMEM; data->components[0] = (*p) / 40;