3855303356
- update to version 1.11.3 - Fix a UDP ping-pong vulnerability in the kpasswd (password changing) service. [CVE-2002-2443] - Improve interoperability with some Windows native PKINIT clients. - install translation files - remove outdated configure options
Michael Calmer2013-06-09 14:19:29 +00:00
7fb60032c6
Accepting request 176881 from network
Stephan Kulow
2013-06-05 09:53:15 +00:00
a10ab51532
Accepting request 176881 from network
Stephan Kulow
2013-06-05 09:53:15 +00:00
703aff2fdd
- update to version 1.11.2 * Incremental propagation could erroneously act as if a slave's database were current after the slave received a full dump that failed to load. * gss_import_sec_context incorrectly set internal state that identifies whether an imported context is from an interposer mechanism or from the underlying mechanism. - upstream fix obsolete krb5-lookup_etypes-leak.patch
Michael Calmer2013-04-28 15:20:13 +00:00
3b6eae740c
- update to version 1.11.2 * Incremental propagation could erroneously act as if a slave's database were current after the slave received a full dump that failed to load. * gss_import_sec_context incorrectly set internal state that identifies whether an imported context is from an interposer mechanism or from the underlying mechanism. - upstream fix obsolete krb5-lookup_etypes-leak.patch
Michael Calmer2013-04-28 15:20:13 +00:00
afa52a69f9
Accepting request 162619 from network
Stephan Kulow
2013-04-05 07:26:17 +00:00
743901a2a3
Accepting request 162619 from network
Stephan Kulow
2013-04-05 07:26:17 +00:00
fe67473a6d
- add conflicts between krb5-mini-devel and krb5-devel
Michael Calmer2013-04-04 13:10:58 +00:00
5a52b35787
- add conflicts between krb5-mini-devel and krb5-devel
Michael Calmer2013-04-04 13:10:58 +00:00
91ad28ede3
- add conflicts between krb5-mini and krb5 and krb5-client
Michael Calmer2013-04-02 15:33:04 +00:00
31cc60a293
- add conflicts between krb5-mini and krb5 and krb5-client
Michael Calmer2013-04-02 15:33:04 +00:00
c043de4335
- enable selinux and set openssl as crypto implementation
Michael Calmer2013-03-27 10:45:21 +00:00
3c1253f79b
- enable selinux and set openssl as crypto implementation
Michael Calmer2013-03-27 10:45:21 +00:00
f4939a9fba
- fix path to executables in service files (bnc#810926)
Michael Calmer2013-03-22 09:35:21 +00:00
1f0ad1e23d
- fix path to executables in service files (bnc#810926)
Michael Calmer2013-03-22 09:35:21 +00:00
13e38775f6
- update to version 1.11.1 * Improve ASN.1 support code, making it table-driven for decoding as well as encoding * Refactor parts of KDC * Documentation consolidation * build docs in the main package * bugfixing - obsolets a lot of patches - refactor some patches
Michael Calmer2013-03-15 10:21:16 +00:00
b1b1a03547
- update to version 1.11.1 * Improve ASN.1 support code, making it table-driven for decoding as well as encoding * Refactor parts of KDC * Documentation consolidation * build docs in the main package * bugfixing - obsolets a lot of patches - refactor some patches
Michael Calmer2013-03-15 10:21:16 +00:00
b220ddde11
Accepting request 157530 from network
Stephan Kulow
2013-03-08 09:50:13 +00:00
39debbbfb5
Accepting request 157530 from network
Stephan Kulow
2013-03-08 09:50:13 +00:00
66ced8b26b
- fix PKINIT null pointer deref in pkinit_check_kdc_pkid() CVE-2012-1016 (bnc#807556) bug-807556-CVE-2012-1016-fix-PKINIT-null-pointer-deref2.dif bug-806715-CVE-2013-1415-fix-PKINIT-null-pointer-deref.dif
Michael Calmer2013-03-06 11:03:13 +00:00
93beda11af
- fix PKINIT null pointer deref in pkinit_check_kdc_pkid() CVE-2012-1016 (bnc#807556) bug-807556-CVE-2012-1016-fix-PKINIT-null-pointer-deref2.dif bug-806715-CVE-2013-1415-fix-PKINIT-null-pointer-deref.dif
Michael Calmer2013-03-06 11:03:13 +00:00
ebe2f14d13
- update to version 1.11 * Improve ASN.1 support code, making it table-driven for decoding as well as encoding * Refactor parts of KDC * Documentation consolidation * build docs in the main package * bugfixing
Michael Calmer2013-01-13 16:54:32 +00:00
34646b1608
- update to version 1.11 * Improve ASN.1 support code, making it table-driven for decoding as well as encoding * Refactor parts of KDC * Documentation consolidation * build docs in the main package * bugfixing
Michael Calmer2013-01-13 16:54:32 +00:00
18f74e88ce
Accepting request 138455 from network
Stephan Kulow
2012-10-18 19:52:56 +00:00
fe3f973048
Accepting request 138455 from network
Stephan Kulow
2012-10-18 19:52:56 +00:00
9f81fd6bf3
Accepting request 138418 from openSUSE:Factory:Staging:Systemd
Michael Calmer2012-10-17 07:48:12 +00:00
d89d191821
Accepting request 138418 from openSUSE:Factory:Staging:Systemd
Michael Calmer2012-10-17 07:48:12 +00:00
c59a42d57b
Accepting request 138198 from network
Stephan Kulow
2012-10-16 05:06:59 +00:00
874de4b110
Accepting request 138198 from network
Stephan Kulow
2012-10-16 05:06:59 +00:00
df32a9b4a9
Accepting request 138156 from openSUSE:Factory:Staging:Systemd
Marcus Meissner2012-10-15 13:04:28 +00:00
7f4e47ce7f
Accepting request 138156 from openSUSE:Factory:Staging:Systemd
Marcus Meissner2012-10-15 13:04:28 +00:00
5a4f1e79e3
Accepting request 137261 from network
Stephan Kulow
2012-10-06 06:19:14 +00:00
50443f5346
Accepting request 137261 from network
Stephan Kulow
2012-10-06 06:19:14 +00:00
dc50be2adf
- add systemd service files for kadmind, krb5kdc and kpropd - add sysconfig templates for kadmind and krb5kdc
Michael Calmer2012-10-05 14:25:10 +00:00
c8ff40b121
- add systemd service files for kadmind, krb5kdc and kpropd - add sysconfig templates for kadmind and krb5kdc
Michael Calmer2012-10-05 14:25:10 +00:00
84f939323f
- update to version 1.10.2 obsolte patches: * krb5-1.7-nodeplibs.patch * krb5-1.9.1-ai_addrconfig.patch * krb5-1.9.1-ai_addrconfig2.patch * krb5-1.9.1-sendto_poll.patch * krb5-1.9-canonicalize-fallback.patch * krb5-1.9-paren.patch * krb5-klist_s.patch * krb5-pkinit-cms2.patch * krb5-trunk-chpw-err.patch * krb5-trunk-gss_delete_sec.patch * krb5-trunk-kadmin-oldproto.patch * krb5-1.9-MITKRB5-SA-2011-006.dif * krb5-1.9-gss_display_status-iakerb.patch * krb5-1.9.1-sendto_poll2.patch * krb5-1.9.1-sendto_poll3.patch * krb5-1.9-MITKRB5-SA-2011-007.dif - Fix an interop issue with Windows Server 2008 R2 Read-Only Domain Controllers. - Update a workaround for a glibc bug that would cause DNS PTR queries to occur even when rdns = false. - Fix a kadmind denial of service issue (null pointer dereference), which could only be triggered by an administrator with the "create" privilege. [CVE-2012-1013] - Fix access controls for KDB string attributes [CVE-2012-1012] - Make the ASN.1 encoding of key version numbers interoperate with Windows Read-Only Domain Controllers - Avoid generating spurious password expiry warnings in cases where the KDC sends an account expiry time without a password expiry time
Michael Calmer2012-06-06 14:55:51 +00:00
1d918b75c9
- update to version 1.10.2 obsolte patches: * krb5-1.7-nodeplibs.patch * krb5-1.9.1-ai_addrconfig.patch * krb5-1.9.1-ai_addrconfig2.patch * krb5-1.9.1-sendto_poll.patch * krb5-1.9-canonicalize-fallback.patch * krb5-1.9-paren.patch * krb5-klist_s.patch * krb5-pkinit-cms2.patch * krb5-trunk-chpw-err.patch * krb5-trunk-gss_delete_sec.patch * krb5-trunk-kadmin-oldproto.patch * krb5-1.9-MITKRB5-SA-2011-006.dif * krb5-1.9-gss_display_status-iakerb.patch * krb5-1.9.1-sendto_poll2.patch * krb5-1.9.1-sendto_poll3.patch * krb5-1.9-MITKRB5-SA-2011-007.dif - Fix an interop issue with Windows Server 2008 R2 Read-Only Domain Controllers. - Update a workaround for a glibc bug that would cause DNS PTR queries to occur even when rdns = false. - Fix a kadmind denial of service issue (null pointer dereference), which could only be triggered by an administrator with the "create" privilege. [CVE-2012-1013] - Fix access controls for KDB string attributes [CVE-2012-1012] - Make the ASN.1 encoding of key version numbers interoperate with Windows Read-Only Domain Controllers - Avoid generating spurious password expiry warnings in cases where the KDC sends an account expiry time without a password expiry time
Michael Calmer2012-06-06 14:55:51 +00:00
bc6ff9093b
Accepting request 107333 from network
Stephan Kulow
2012-03-01 06:25:10 +00:00
802a6e546c
Accepting request 107333 from network
Stephan Kulow
2012-03-01 06:25:10 +00:00
7d8fd8176d
Accepting request 107071 from home:StefanBruens:branches:network
Marcus Meissner2012-02-28 09:04:15 +00:00
f973f960f4
Accepting request 107071 from home:StefanBruens:branches:network
Marcus Meissner2012-02-28 09:04:15 +00:00
ddf46576c9
Accepting request 104047 from network
Stephan Kulow
2012-02-15 15:15:33 +00:00
4d9d706a16
Accepting request 104047 from network
Stephan Kulow
2012-02-15 15:15:33 +00:00
3e20fdd243
Accepting request 102242 from home:msmeissn:branches:network
Marcus Meissner2012-02-08 08:11:14 +00:00
e91a6f66e5
Accepting request 102242 from home:msmeissn:branches:network
Marcus Meissner2012-02-08 08:11:14 +00:00
a88fb5d188
Accepting request 98193 from network
Stephan Kulow
2012-01-06 10:45:08 +00:00
7c0fc28a79
Accepting request 98193 from network
Stephan Kulow
2012-01-06 10:45:08 +00:00
7cd74a1dc5
Accepting request 97386 from home:coolo:removeautoconf
Stephan Kulow
2011-12-25 21:43:39 +00:00
ac7776499a
Accepting request 97386 from home:coolo:removeautoconf
Stephan Kulow
2011-12-25 21:43:39 +00:00
ad7256d1c7
Accepting request 95686 from network
Stephan Kulow
2011-12-12 15:57:09 +00:00
44c1795946
Accepting request 95686 from network
Stephan Kulow
2011-12-12 15:57:09 +00:00
6e6175d4bc
- fix KDC null pointer dereference in TGS handling (MITKRB5-SA-2011-007, bnc#730393) CVE-2011-1530
Michael Calmer2011-12-07 08:41:31 +00:00
249f9e5a4f
- fix KDC null pointer dereference in TGS handling (MITKRB5-SA-2011-007, bnc#730393) CVE-2011-1530
Michael Calmer2011-12-07 08:41:31 +00:00
f4d30b42a2
- fix KDC HA feature introduced with implementing KDC poll (RT#6951)
Michael Calmer2011-11-21 10:17:08 +00:00
1256824218
- fix KDC HA feature introduced with implementing KDC poll (RT#6951)
Michael Calmer2011-11-21 10:17:08 +00:00
46ef3c181c
Accepting request 92055 from home:rhafer:branches:network
Michael Calmer2011-11-21 09:54:25 +00:00