Check context handle in gss_export_sec_context() After commit 4f35b27a9ee38ca0b557ce8e6d059924a63d4eff, the context_handle parameter in gss_export_sec_context() is dereferenced before arguments are validated by val_exp_sec_ctx_args(). With a null context_handle, the new code segfaults instead of failing gracefully. Revert this part of the commit and only dereference context_handle if it is non-null. https://github.com/krb5/krb5/commit/b6f29cbd2ab132e336b5435447348400e9a9e241 Author: Tomas Kuthan Committer: Greg Hudson Commit: b6f29cbd2ab132e336b5435447348400e9a9e241 Branch: master src/lib/gssapi/mechglue/g_exp_sec_context.c | 5 +++-- 1 files changed, 3 insertions(+), 2 deletions(-)