eaff141ce0
- update to version 1.11.3 - Fix a UDP ping-pong vulnerability in the kpasswd (password changing) service. [CVE-2002-2443] - Improve interoperability with some Windows native PKINIT clients. - install translation files - remove outdated configure options
Michael Calmer2013-06-09 14:19:29 +00:00
7fb60032c6
Accepting request 176881 from network
Stephan Kulow
2013-06-05 09:53:15 +00:00
703aff2fdd
- update to version 1.11.2 * Incremental propagation could erroneously act as if a slave's database were current after the slave received a full dump that failed to load. * gss_import_sec_context incorrectly set internal state that identifies whether an imported context is from an interposer mechanism or from the underlying mechanism. - upstream fix obsolete krb5-lookup_etypes-leak.patch
Michael Calmer2013-04-28 15:20:13 +00:00
afa52a69f9
Accepting request 162619 from network
Stephan Kulow
2013-04-05 07:26:17 +00:00
fe67473a6d
- add conflicts between krb5-mini-devel and krb5-devel
Michael Calmer2013-04-04 13:10:58 +00:00
91ad28ede3
- add conflicts between krb5-mini and krb5 and krb5-client
Michael Calmer2013-04-02 15:33:04 +00:00
c043de4335
- enable selinux and set openssl as crypto implementation
Michael Calmer2013-03-27 10:45:21 +00:00
f4939a9fba
- fix path to executables in service files (bnc#810926)
Michael Calmer2013-03-22 09:35:21 +00:00
13e38775f6
- update to version 1.11.1 * Improve ASN.1 support code, making it table-driven for decoding as well as encoding * Refactor parts of KDC * Documentation consolidation * build docs in the main package * bugfixing - obsolets a lot of patches - refactor some patches
Michael Calmer2013-03-15 10:21:16 +00:00
b220ddde11
Accepting request 157530 from network
Stephan Kulow
2013-03-08 09:50:13 +00:00
66ced8b26b
- fix PKINIT null pointer deref in pkinit_check_kdc_pkid() CVE-2012-1016 (bnc#807556) bug-807556-CVE-2012-1016-fix-PKINIT-null-pointer-deref2.dif bug-806715-CVE-2013-1415-fix-PKINIT-null-pointer-deref.dif
Michael Calmer2013-03-06 11:03:13 +00:00
ebe2f14d13
- update to version 1.11 * Improve ASN.1 support code, making it table-driven for decoding as well as encoding * Refactor parts of KDC * Documentation consolidation * build docs in the main package * bugfixing
Michael Calmer2013-01-13 16:54:32 +00:00
18f74e88ce
Accepting request 138455 from network
Stephan Kulow
2012-10-18 19:52:56 +00:00
9f81fd6bf3
Accepting request 138418 from openSUSE:Factory:Staging:Systemd
Michael Calmer2012-10-17 07:48:12 +00:00
c59a42d57b
Accepting request 138198 from network
Stephan Kulow
2012-10-16 05:06:59 +00:00
df32a9b4a9
Accepting request 138156 from openSUSE:Factory:Staging:Systemd
Marcus Meissner2012-10-15 13:04:28 +00:00
5a4f1e79e3
Accepting request 137261 from network
Stephan Kulow
2012-10-06 06:19:14 +00:00
dc50be2adf
- add systemd service files for kadmind, krb5kdc and kpropd - add sysconfig templates for kadmind and krb5kdc
Michael Calmer2012-10-05 14:25:10 +00:00
84f939323f
- update to version 1.10.2 obsolte patches: * krb5-1.7-nodeplibs.patch * krb5-1.9.1-ai_addrconfig.patch * krb5-1.9.1-ai_addrconfig2.patch * krb5-1.9.1-sendto_poll.patch * krb5-1.9-canonicalize-fallback.patch * krb5-1.9-paren.patch * krb5-klist_s.patch * krb5-pkinit-cms2.patch * krb5-trunk-chpw-err.patch * krb5-trunk-gss_delete_sec.patch * krb5-trunk-kadmin-oldproto.patch * krb5-1.9-MITKRB5-SA-2011-006.dif * krb5-1.9-gss_display_status-iakerb.patch * krb5-1.9.1-sendto_poll2.patch * krb5-1.9.1-sendto_poll3.patch * krb5-1.9-MITKRB5-SA-2011-007.dif - Fix an interop issue with Windows Server 2008 R2 Read-Only Domain Controllers. - Update a workaround for a glibc bug that would cause DNS PTR queries to occur even when rdns = false. - Fix a kadmind denial of service issue (null pointer dereference), which could only be triggered by an administrator with the "create" privilege. [CVE-2012-1013] - Fix access controls for KDB string attributes [CVE-2012-1012] - Make the ASN.1 encoding of key version numbers interoperate with Windows Read-Only Domain Controllers - Avoid generating spurious password expiry warnings in cases where the KDC sends an account expiry time without a password expiry time
Michael Calmer2012-06-06 14:55:51 +00:00
bc6ff9093b
Accepting request 107333 from network
Stephan Kulow
2012-03-01 06:25:10 +00:00
7d8fd8176d
Accepting request 107071 from home:StefanBruens:branches:network
Marcus Meissner2012-02-28 09:04:15 +00:00
ddf46576c9
Accepting request 104047 from network
Stephan Kulow
2012-02-15 15:15:33 +00:00
3e20fdd243
Accepting request 102242 from home:msmeissn:branches:network
Marcus Meissner2012-02-08 08:11:14 +00:00
a88fb5d188
Accepting request 98193 from network
Stephan Kulow
2012-01-06 10:45:08 +00:00
7cd74a1dc5
Accepting request 97386 from home:coolo:removeautoconf
Stephan Kulow
2011-12-25 21:43:39 +00:00
ad7256d1c7
Accepting request 95686 from network
Stephan Kulow
2011-12-12 15:57:09 +00:00
6e6175d4bc
- fix KDC null pointer dereference in TGS handling (MITKRB5-SA-2011-007, bnc#730393) CVE-2011-1530
Michael Calmer2011-12-07 08:41:31 +00:00
f4d30b42a2
- fix KDC HA feature introduced with implementing KDC poll (RT#6951)
Michael Calmer2011-11-21 10:17:08 +00:00
46ef3c181c
Accepting request 92055 from home:rhafer:branches:network
Michael Calmer2011-11-21 09:54:25 +00:00
aa26e182c2
Accepting request 88659 from network
Stephan Kulow
2011-10-19 12:08:55 +00:00
f55551038a
- fix kdc remote denial of service (MITKRB5-SA-2011-006, bnc#719393) CVE-2011-1527, CVE-2011-1528, CVE-2011-1529
Michael Calmer2011-10-19 07:48:04 +00:00
bc44ac5cca
Autobuild autoformatter for 79559
Sascha Peilicke
2011-08-24 11:36:07 +00:00
0b3bb9a064
Updating link to change in openSUSE:Factory/krb5 revision 72.0
OBS User buildservice-autocommit
2011-08-24 11:36:07 +00:00
b12b5169d7
- Fix vulnerability to a double-free condition in KDC daemon (MITKRB5-SA-2011-003, bnc#671717) CVE-2011-0284
Michael Calmer2011-03-16 07:59:53 +00:00
73e2402ae0
Autobuild autoformatter for 60384
Ruediger Oertel
2011-02-11 01:27:33 +00:00
1e4178c989
- Fix kpropd denial of service (MITKRB5-SA-2011-001, bnc#662665) CVE-2010-4022 - Fix KDC denial of service attacks with LDAP back end (MITKRB5-SA-2011-002, bnc#663619) CVE-2011-0281, CVE-2011-0282
Michael Calmer2011-02-09 09:12:27 +00:00
9018906477
- update to krb5-1.8.3 * remove patches which are now upstrem - krb5-1.7-MITKRB5-SA-2010-004.dif - krb5-1.8.1-gssapi-error-table.dif - krb5-MITKRB5-SA-2010-005.dif
Michael Calmer2010-10-22 09:17:36 +00:00
089523862c
- change environment variable PATH directly for csh (bnc#642080)
Michael Calmer2010-10-22 08:51:14 +00:00
a91f40af6f
Accepting request 50195 from network
OBS User autobuild
2010-10-11 09:50:03 +00:00
b40723da81
Updating link to change in openSUSE:Factory/krb5 revision 55.0
OBS User buildservice-autocommit
2010-10-11 09:50:03 +00:00
74e4ec3b00
Accepting request 50195 from network
OBS User autobuild
2010-10-11 09:50:02 +00:00
9482246780
- fix a dereference of an uninitialized pointer while processing authorization data. CVE-2010-1322, MITKRB5-SA-2010-006 (bnc#640990)
Michael Calmer2010-10-11 08:46:56 +00:00
36dadf10dd
Accepting request 41864 from network
OBS User autobuild
2010-06-22 08:47:11 +00:00
8c6241f662
Updating link to change in openSUSE:Factory/krb5 revision 52.0
OBS User buildservice-autocommit
2010-06-22 08:47:11 +00:00