SHA256
1
0
forked from pool/krb5
Michael Calmer 248552dcc5 - Fix multiple checksum handling vulnerabilities
(MITKRB5-SA-2010-007, bnc#650650)
  CVE-2010-1324
  * krb5 GSS-API applications may accept unkeyed checksums
  * krb5 application services may accept unkeyed PAC checksums
  * krb5 KDC may accept low-entropy KrbFastArmoredReq checksums
  CVE-2010-1323
  * krb5 clients may accept unkeyed SAM-2 challenge checksums
  * krb5 may accept KRB-SAFE checksums with low-entropy derived keys
  CVE-2010-4020
  * krb5 may accept authdata checksums with low-entropy derived keys
  CVE-2010-4021
  * krb5 KDC may issue unrequested tickets due to KrbFastReq forgery

OBS-URL: https://build.opensuse.org/package/show/network/krb5?expand=0&rev=37
2010-12-01 10:45:18 +00:00
2010-03-23 11:40:55 +00:00
2010-10-22 09:17:36 +00:00
2010-03-23 11:40:55 +00:00
2010-10-22 09:22:50 +00:00
2010-10-22 09:17:36 +00:00
2010-10-22 09:34:18 +00:00
Description
No description provided
19 MiB
Languages
Makefile 100%