When retrying authentication after a password change of an expired password, use the new password instead of the original one. Also, pass in the correct length for the new password buffer to change_password and zero the buffer that holds the new password on function exit. Signed-off-by: Russ Allbery <rra@stanford.edu> Signed-off-by: Nicolas Williams <nico@cryptonector.com>
64 KiB
64 KiB