[ubuntu/oneiric-security] krb5, krb5_1.9.1+dfsg-1ubuntu1.1_i386_translations.tar.gz, krb5_1.9.1+dfsg-1ubuntu1.1_amd64_translations.tar.gz, krb5_1.9.1+dfsg-1ubuntu1.1_powerpc_translations.tar.gz, krb5_1.9.1+dfsg-1ubuntu1.1_armel_translations.tar.gz 1.9.1+dfsg-1ubuntu1.1 (Accepted)
Steve Beattie
sbeattie at ubuntu.com
Tue Oct 18 22:03:31 UTC 2011
krb5 (1.9.1+dfsg-1ubuntu1.1) oneiric-security; urgency=low
* SECURITY UPDATE: fix multiple kdc DoS issues:
- db2/lockout.c, ldap/libkdb_ldap/ldap_principal2.c,
ldap/libkdb_ldap/lockout.c:
+ more strict checking for null pointers
+ disable assert iand return when db is locked
+ applied inline
- CVE-2011-1527, CVE-2011-1528, and CVE-2011-1529
*
Date: Mon, 10 Oct 2011 11:11:47 -0700
Changed-By: Steve Beattie <sbeattie at ubuntu.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
https://launchpad.net/ubuntu/oneiric/+source/krb5/1.9.1+dfsg-1ubuntu1.1
-------------- next part --------------
Format: 1.8
Date: Mon, 10 Oct 2011 11:11:47 -0700
Source: krb5
Binary: krb5-user krb5-kdc krb5-kdc-ldap krb5-admin-server krb5-multidev libkrb5-dev libkrb5-dbg krb5-pkinit krb5-doc libkrb5-3 libgssapi-krb5-2 libgssrpc4 libkadm5srv-mit8 libkadm5clnt-mit8 libk5crypto3 libkdb5-5 libkrb5support0 krb5-gss-samples libkrb53
Architecture: source
Version: 1.9.1+dfsg-1ubuntu1.1
Distribution: oneiric-security
Urgency: low
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Steve Beattie <sbeattie at ubuntu.com>
Description:
krb5-admin-server - MIT Kerberos master server (kadmind)
krb5-doc - Documentation for MIT Kerberos
krb5-gss-samples - MIT Kerberos GSS Sample applications
krb5-kdc - MIT Kerberos key server (KDC)
krb5-kdc-ldap - MIT Kerberos key server (KDC) LDAP plugin
krb5-multidev - Development files for MIT Kerberos without Heimdal conflict
krb5-pkinit - PKINIT plugin for MIT Kerberos
krb5-user - Basic programs to authenticate using MIT Kerberos
libgssapi-krb5-2 - MIT Kerberos runtime libraries - krb5 GSS-API Mechanism
libgssrpc4 - MIT Kerberos runtime libraries - GSS enabled ONCRPC
libk5crypto3 - MIT Kerberos runtime libraries - Crypto Library
libkadm5clnt-mit8 - MIT Kerberos runtime libraries - Administration Clients
libkadm5srv-mit8 - MIT Kerberos runtime libraries - KDC and Admin Server
libkdb5-5 - MIT Kerberos runtime libraries - Kerberos database
libkrb5-3 - MIT Kerberos runtime libraries
libkrb5-dbg - Debugging files for MIT Kerberos
libkrb5-dev - Headers and development libraries for MIT Kerberos
libkrb53 - transitional package for MIT Kerberos libraries
libkrb5support0 - MIT Kerberos runtime libraries - Support library
Changes:
krb5 (1.9.1+dfsg-1ubuntu1.1) oneiric-security; urgency=low
.
* SECURITY UPDATE: fix multiple kdc DoS issues:
- db2/lockout.c, ldap/libkdb_ldap/ldap_principal2.c,
ldap/libkdb_ldap/lockout.c:
+ more strict checking for null pointers
+ disable assert iand return when db is locked
+ applied inline
- CVE-2011-1527, CVE-2011-1528, and CVE-2011-1529
*
Checksums-Sha1:
53805ef1fa01c0f1166c11d5e25c50d19861b140 2362 krb5_1.9.1+dfsg-1ubuntu1.1.dsc
0cbdf7edb0c2fdc34e73e7dbaa314aee5cf0c1c6 112982 krb5_1.9.1+dfsg-1ubuntu1.1.diff.gz
Checksums-Sha256:
a25ca0f7f36e0cfdcf937e8b2594f3526d3949ce49d24ccf492a5e995f680fe6 2362 krb5_1.9.1+dfsg-1ubuntu1.1.dsc
03ea87af8edc9f22aa712d69df4b645b79dfbf9f226d49fe7b04ccf948a3ed55 112982 krb5_1.9.1+dfsg-1ubuntu1.1.diff.gz
Files:
c06254f562c89e924a34cec6aec015f6 2362 net standard krb5_1.9.1+dfsg-1ubuntu1.1.dsc
c68fd10f0086d08ef45c88b26fcc7d7f 112982 net standard krb5_1.9.1+dfsg-1ubuntu1.1.diff.gz
Original-Maintainer: Sam Hartman <hartmans at debian.org>
More information about the Oneiric-changes
mailing list