-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Thu, 30 Sep 2021 16:30:13 +0300 Source: krb5 Binary: krb5-user krb5-kdc krb5-kdc-ldap krb5-admin-server krb5-kpropd krb5-multidev libkrb5-dev libkrb5-dbg krb5-pkinit krb5-otp krb5-k5tls krb5-doc libkrb5-3 libgssapi-krb5-2 libgssrpc4 libkadm5srv-mit11 libkadm5clnt-mit11 libk5crypto3 libkdb5-8 libkrb5support0 libkrad0 krb5-gss-samples krb5-locales libkrad-dev Architecture: source Version: 1.15-1+deb9u3 Distribution: stretch-security Urgency: medium Maintainer: Sam Hartman <hartmans@debian.org> Changed-By: Adrian Bunk <bunk@debian.org> Description: krb5-admin-server - MIT Kerberos master server (kadmind) krb5-doc - documentation for MIT Kerberos krb5-gss-samples - MIT Kerberos GSS Sample applications krb5-k5tls - TLS plugin for MIT Kerberos krb5-kdc - MIT Kerberos key server (KDC) krb5-kdc-ldap - MIT Kerberos key server (KDC) LDAP plugin krb5-kpropd - MIT Kerberos key server (KDC) krb5-locales - internationalization support for MIT Kerberos krb5-multidev - development files for MIT Kerberos without Heimdal conflict krb5-otp - OTP plugin for MIT Kerberos krb5-pkinit - PKINIT plugin for MIT Kerberos krb5-user - basic programs to authenticate using MIT Kerberos libgssapi-krb5-2 - MIT Kerberos runtime libraries - krb5 GSS-API Mechanism libgssrpc4 - MIT Kerberos runtime libraries - GSS enabled ONCRPC libk5crypto3 - MIT Kerberos runtime libraries - Crypto Library libkadm5clnt-mit11 - MIT Kerberos runtime libraries - Administration Clients libkadm5srv-mit11 - MIT Kerberos runtime libraries - KDC and Admin Server libkdb5-8 - MIT Kerberos runtime libraries - Kerberos database libkrad-dev - MIT Kerberos RADIUS Library Development libkrad0 - MIT Kerberos runtime libraries - RADIUS library libkrb5-3 - MIT Kerberos runtime libraries libkrb5-dbg - debugging files for MIT Kerberos libkrb5-dev - headers and development libraries for MIT Kerberos libkrb5support0 - MIT Kerberos runtime libraries - Support library Changes: krb5 (1.15-1+deb9u3) stretch-security; urgency=medium . * Non-maintainer upload by the LTS team. * CVE-2018-5729, CVE-2018-5730: Fix flaws in LDAP DN checking. * CVE-2018-20217: Ignore password attributes for S4U2Self requests. * CVE-2021-37750: Fix KDC null deref on TGS inner body null server. Checksums-Sha1: bb5403f4f27e636efc487ae8822df83e4c1722a2 3456 krb5_1.15-1+deb9u3.dsc 07fb763082c21e9e597b39aac6413302e3aa7c97 9327157 krb5_1.15.orig.tar.gz ce93bd5f2d62c43baa838a37ee14054aaeddc081 150040 krb5_1.15-1+deb9u3.debian.tar.xz Checksums-Sha256: 85a66bbb32f36fa4aa8a192b16c8106ed975dca87bcd4bd08bdd160d858309ef 3456 krb5_1.15-1+deb9u3.dsc fd34752774c808ab4f6f864f935c49945f5a56b62240b1ad4ab1af7b4ded127c 9327157 krb5_1.15.orig.tar.gz 7f36ff9d174926ce6b5ed0cc0370fc3d091d3170ffba6d5d9dfa6d6c0c239177 150040 krb5_1.15-1+deb9u3.debian.tar.xz Files: 8a2335a06f267109f9967a57d2f7658d 3456 net standard krb5_1.15-1+deb9u3.dsc cd43a3316ebbb86b2a9020b485b1a819 9327157 net standard krb5_1.15.orig.tar.gz e78e03f05e559a4251d48101d3d771c5 150040 net standard krb5_1.15-1+deb9u3.debian.tar.xz -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEOvp1f6xuoR0v9F3wiNJCh6LYmLEFAmFV+5QACgkQiNJCh6LY mLEZQQ/+N+uMz8+lHs80cSiEoo7Hue8/NcAGK1+J3MMbVaia0L0LNud638ixQSpH DHX0l07ek7WFExGWzBvQu41AhlpCZSB0VPk1A7ukyUvrPrmaLeZ4VPlPnZET4vVI ZGGV6fa8WagHmn1kEOYJFHg46xAlgjF+vC/6q0NUGNTqkeY2UzXvX4Vu493VlWif MVrhvtew0/3S9tFZi1KJG8vE9Ptmk6KUlCAXt3v8WY8uks4oCVlFhagmM+XepnHV /rkw7qHrrVMTCwMvO+PYW/mZkp5oAg8r7X6u5jQmI7PGCL/lauZIeCdoe9JG4/ph j7uahK2DU4s/UK9FBv1jCas4yH1YKkOhSVt2H5mmr5k1UNnm3sT2EVgeFYGAkpVB ueA2cm/djVkTc9ja47oMMT61Y4rcpALL32eJmdEl7aWDc665W0MoU409cNsCB/yx kaXBlN19FnxwDN9ng+q2IgoIEVTVkgBbhn5rPT8wfw5Okd9LIQHNEbcOONfR18wt BAMFMxPZch9S4+oDbaPJjUbS4iK6gQI9Zo+KIBwtjuckop+dznS4ppXKt0Oia/R5 QywJtFWjeA5c5U3hPr33RT8xb/1twjF2aP9GMFVNI+vQD1QnhWp9BcdQxXWN3Evv idQPXDhaTBCUGDjbnM60hSUswnoEksEiYAcpxbisUeHYjY+vEt4= =YHJa -----END PGP SIGNATURE-----