------------------------------------------------------------------- Wed Apr 11 10:59:20 CEST 2007 - mc@suse.de - update krb5-1.6-post.dif * fix kadmind stack overflow in krb5_klog_syslog (MITKRB5-SA-2007-002 - CVE-2007-0957) [#253548] * fix double free attack in the RPC library (MITKRB5-SA-2007-003 - CVE-2007-1216) [#252487] * fix krb5 telnetd login injection (MIT-SA-2007-001 - CVE-2007-0956) #247765 ------------------------------------------------------------------- Thu Mar 29 12:42:51 CEST 2007 - mc@suse.de - add ncurses-devel and bison to BuildRequires - rework some patches ------------------------------------------------------------------- Mon Feb 19 14:00:34 CET 2007 - mc@suse.de - update krb5-1.6-post.dif ------------------------------------------------------------------- Fri Feb 9 13:31:54 CET 2007 - mc@suse.de - update krb5-1.6-post.dif ------------------------------------------------------------------- Mon Jan 29 17:47:22 CET 2007 - ro@suse.de - no main package, no debuginfo ------------------------------------------------------------------- Mon Jan 29 11:30:35 CET 2007 - mc@suse.de - krb5-1.6-fix-passwd-tcp.dif and krb5-1.6-fix-sendto_kdc-memset.dif are now upstream. Remove patches. - fix leak in krb5_kt_resolve and krb5_kt_wresolve ------------------------------------------------------------------- Tue Jan 23 17:21:53 CET 2007 - mc@suse.de - fix "local variable used before set" in ftp.c [#237684] - use less BuildRequires ------------------------------------------------------------------- Mon Jan 22 12:21:41 CET 2007 - mc@suse.de - initial release (version 1.6) * Major changes in 1.6 include * Partial client implementation to handle server name referrals. * Pre-authentication plug-in framework, donated by Red Hat. * LDAP KDB plug-in, donated by Novell.