[ubuntu/natty] krb5 1.8.3+dfsg-5ubuntu1 (Accepted)

Steve Beattie sbeattie at ubuntu.com
Tue Mar 15 20:15:29 UTC 2011


krb5 (1.8.3+dfsg-5ubuntu1) natty; urgency=low

  * SECURITY UPDATE: kdc denial of service due to double-free if PKINIT
    capability is used.
    - src/kdc/do_as_req.c: clear fields on allocation; applied inine,
      thanks to upstream
    - CVE-2011-0284
    - MITKRB5-SA-2011-003

Date: Tue, 15 Mar 2011 10:40:43 -0700
Changed-By: Steve Beattie <sbeattie at ubuntu.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Signed-By: Chuck Short <chuck.short at canonical.com>
https://launchpad.net/ubuntu/natty/+source/krb5/1.8.3+dfsg-5ubuntu1
-------------- next part --------------
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Format: 1.8
Date: Tue, 15 Mar 2011 10:40:43 -0700
Source: krb5
Binary: krb5-user krb5-kdc krb5-kdc-ldap krb5-admin-server krb5-multidev libkrb5-dev libkrb5-dbg krb5-pkinit krb5-doc libkrb5-3 libgssapi-krb5-2 libgssrpc4 libkadm5srv-mit7 libkadm5clnt-mit7 libk5crypto3 libkdb5-4 libkrb5support0 libkrb53
Architecture: source
Version: 1.8.3+dfsg-5ubuntu1
Distribution: natty
Urgency: low
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Steve Beattie <sbeattie at ubuntu.com>
Description: 
 krb5-admin-server - MIT Kerberos master server (kadmind)
 krb5-doc   - Documentation for MIT Kerberos
 krb5-kdc   - MIT Kerberos key server (KDC)
 krb5-kdc-ldap - MIT Kerberos key server (KDC) LDAP plugin
 krb5-multidev - Development files for MIT Kerberos without Heimdal conflict
 krb5-pkinit - PKINIT plugin for MIT Kerberos
 krb5-user  - Basic programs to authenticate using MIT Kerberos
 libgssapi-krb5-2 - MIT Kerberos runtime libraries - krb5 GSS-API Mechanism
 libgssrpc4 - MIT Kerberos runtime libraries - GSS enabled ONCRPC
 libk5crypto3 - MIT Kerberos runtime libraries - Crypto Library
 libkadm5clnt-mit7 - MIT Kerberos runtime libraries - Administration Clients
 libkadm5srv-mit7 - MIT Kerberos runtime libraries - KDC and Admin Server
 libkdb5-4  - MIT Kerberos runtime libraries - Kerberos database
 libkrb5-3  - MIT Kerberos runtime libraries
 libkrb5-dbg - Debugging files for MIT Kerberos
 libkrb5-dev - Headers and development libraries for MIT Kerberos
 libkrb53   - transitional package for MIT Kerberos libraries
 libkrb5support0 - MIT Kerberos runtime libraries - Support library
Changes: 
 krb5 (1.8.3+dfsg-5ubuntu1) natty; urgency=low
 .
   * SECURITY UPDATE: kdc denial of service due to double-free if PKINIT
     capability is used.
     - src/kdc/do_as_req.c: clear fields on allocation; applied inine,
       thanks to upstream
     - CVE-2011-0284
     - MITKRB5-SA-2011-003
Checksums-Sha1: 
 2e2ef55b569bd50c855ef58e43913e11a624804a 1685 krb5_1.8.3+dfsg-5ubuntu1.dsc
 de8ca8d5bcffdc3c6f3f7e07ec4f8b904e93b4f3 106412 krb5_1.8.3+dfsg-5ubuntu1.diff.gz
Checksums-Sha256: 
 f80cce6f4b7b05eaf7b96ba119a2be250b00c25b8b6b562314acc01fbdd3a6bc 1685 krb5_1.8.3+dfsg-5ubuntu1.dsc
 e87572f79d583c0e6b59d333f89c7c99d255713fda773d5f150ccbf489c22638 106412 krb5_1.8.3+dfsg-5ubuntu1.diff.gz
Files: 
 84e884fd4bb603aad26b47317c8887cc 1685 net standard krb5_1.8.3+dfsg-5ubuntu1.dsc
 f72cc4a9d8c9dc4c6fbdd7ae6e17e081 106412 net standard krb5_1.8.3+dfsg-5ubuntu1.diff.gz
Original-Maintainer: Sam Hartman <hartmans at debian.org>

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.11 (GNU/Linux)

iEYEARECAAYFAk1/yHsACgkQIHZ33voUATuMEACfUm55EC1u70ojKKUA1wRshi9J
dFIAmwcWkI7wshzfmx2mIB9iNzQmMi6A
=uQpc
-----END PGP SIGNATURE-----


More information about the Natty-changes mailing list