99 lines
3.1 KiB
Plaintext
99 lines
3.1 KiB
Plaintext
-------------------------------------------------------------------
|
|
Mon Jul 2 11:39:54 CEST 2007 - mc@suse.de
|
|
|
|
- update krb5-1.6.1-post.dif
|
|
* fix leak in krb5_walk_realm_tree
|
|
* rd_req_decoded needs to deal with referral realms
|
|
* fix buffer overflow in kadmind
|
|
(MITKRB5-SA-2007-005 - CVE-2007-2798)
|
|
[#278689]
|
|
* fix kadmind code execution bug
|
|
(MITKRB5-SA-2007-004 - CVE-2007-2442 - CVE-2007-2443)
|
|
[#271191]
|
|
|
|
-------------------------------------------------------------------
|
|
Wed May 9 15:31:08 CEST 2007 - mc@suse.de
|
|
|
|
- fix uninitialized salt length
|
|
- add extra check for keytab file
|
|
|
|
-------------------------------------------------------------------
|
|
Thu May 3 12:13:35 CEST 2007 - mc@suse.de
|
|
|
|
- adding krb5-1.6.1-post.dif
|
|
* fix segfault in krb5_get_init_creds_password
|
|
* remove debug output in ftp client
|
|
* profile stores empty string values without double quotes
|
|
|
|
-------------------------------------------------------------------
|
|
Mon Apr 23 11:17:04 CEST 2007 - mc@suse.de
|
|
|
|
- update to final 1.6.1 version
|
|
|
|
-------------------------------------------------------------------
|
|
Mon Apr 16 14:39:58 CEST 2007 - mc@suse.de
|
|
|
|
- update to version 1.6.1 Beta1
|
|
- remove obsolete patches
|
|
(krb5-1.6-post.dif, krb5-1.6-patchlevel.dif)
|
|
- rework compile_pie patch
|
|
|
|
-------------------------------------------------------------------
|
|
Wed Apr 11 10:59:20 CEST 2007 - mc@suse.de
|
|
|
|
- update krb5-1.6-post.dif
|
|
* fix kadmind stack overflow in krb5_klog_syslog
|
|
(MITKRB5-SA-2007-002 - CVE-2007-0957)
|
|
[#253548]
|
|
* fix double free attack in the RPC library
|
|
(MITKRB5-SA-2007-003 - CVE-2007-1216)
|
|
[#252487]
|
|
* fix krb5 telnetd login injection
|
|
(MIT-SA-2007-001 - CVE-2007-0956)
|
|
#247765
|
|
|
|
-------------------------------------------------------------------
|
|
Thu Mar 29 12:42:51 CEST 2007 - mc@suse.de
|
|
|
|
- add ncurses-devel and bison to BuildRequires
|
|
- rework some patches
|
|
|
|
-------------------------------------------------------------------
|
|
Mon Feb 19 14:00:34 CET 2007 - mc@suse.de
|
|
|
|
- update krb5-1.6-post.dif
|
|
|
|
-------------------------------------------------------------------
|
|
Fri Feb 9 13:31:54 CET 2007 - mc@suse.de
|
|
|
|
- update krb5-1.6-post.dif
|
|
|
|
-------------------------------------------------------------------
|
|
Mon Jan 29 17:47:22 CET 2007 - ro@suse.de
|
|
|
|
- no main package, no debuginfo
|
|
|
|
-------------------------------------------------------------------
|
|
Mon Jan 29 11:30:35 CET 2007 - mc@suse.de
|
|
|
|
- krb5-1.6-fix-passwd-tcp.dif and krb5-1.6-fix-sendto_kdc-memset.dif
|
|
are now upstream. Remove patches.
|
|
- fix leak in krb5_kt_resolve and krb5_kt_wresolve
|
|
|
|
-------------------------------------------------------------------
|
|
Tue Jan 23 17:21:53 CET 2007 - mc@suse.de
|
|
|
|
- fix "local variable used before set" in ftp.c
|
|
[#237684]
|
|
- use less BuildRequires
|
|
|
|
-------------------------------------------------------------------
|
|
Mon Jan 22 12:21:41 CET 2007 - mc@suse.de
|
|
|
|
- initial release (version 1.6)
|
|
* Major changes in 1.6 include
|
|
* Partial client implementation to handle server name referrals.
|
|
* Pre-authentication plug-in framework, donated by Red Hat.
|
|
* LDAP KDB plug-in, donated by Novell.
|
|
|