-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.7 Date: Tue, 12 Jul 2005 15:45:14 -0400 Source: krb5 Binary: krb5-doc libkrb5-dev krb5-rsh-server krb5-user krb5-ftpd libkadm55 libkrb53 krb5-clients krb5-telnetd krb5-kdc krb5-admin-server Architecture: source powerpc all Version: 1.3.6-2sarge2 Distribution: stable-security Urgency: high Maintainer: Sam Hartman <hartmans@debian.org> Changed-By: Sam Hartman <hartmans@debian.org> Description: krb5-admin-server - Mit Kerberos master server (kadmind) krb5-clients - Secure replacements for ftp, telnet and rsh using MIT Kerberos krb5-doc - Documentation for krb5 krb5-ftpd - Secure FTP server supporting MIT Kerberos krb5-kdc - Mit Kerberos key server (KDC) krb5-rsh-server - Secure replacements for rshd and rlogind using MIT Kerberos krb5-telnetd - Secure telnet server supporting MIT Kerberos krb5-user - Basic programs to authenticate using MIT Kerberos libkadm55 - MIT Kerberos administration runtime libraries libkrb5-dev - Headers and development libraries for MIT Kerberos libkrb53 - MIT Kerberos runtime libraries Changes: krb5 (1.3.6-2sarge2) stable-security; urgency=high . * Fix double free in krb5_recvauth; critical because it is in the code path for kpropd and may allow arbitrary code execution. (can-2005-1689) * krb5_unparse_name overflows allocated storage by one byte on 0 element principal name (CAN-2005-1175, VU#885830) * Do not free unallocated storage in the KDC's TCP request handling path (CAN-2005-1174, VU#259798) Files: da11a6168871f74929d30ec092b1da9c 782 net standard krb5_1.3.6-2sarge2.dsc 7974d0fc413802712998d5fc5eec2919 6526510 net standard krb5_1.3.6.orig.tar.gz e775434ffebb62c866a0803fa75e88e0 660240 net standard krb5_1.3.6-2sarge2.diff.gz a6b3db90775a52c0bdf9388ec6261048 718250 doc optional krb5-doc_1.3.6-2sarge2_all.deb b974bd1c9870660a3603dfbd0efd8731 164962 libs optional libkadm55_1.3.6-2sarge2_powerpc.deb 195cae3d096c8fe39115a2d9b60a18ac 352428 libs standard libkrb53_1.3.6-2sarge2_powerpc.deb cabfc4f5adb594329fc4a7a4e5adb776 143090 net optional krb5-user_1.3.6-2sarge2_powerpc.deb 03c65d717ebaac219b4908e842ef940f 217060 net optional krb5-clients_1.3.6-2sarge2_powerpc.deb f58fe267de1b0fc630b35af231e47c01 82000 net optional krb5-rsh-server_1.3.6-2sarge2_powerpc.deb dad4efe57801436d3476079d7bd3438e 56366 net extra krb5-ftpd_1.3.6-2sarge2_powerpc.deb 862e8a596c6b993a3ad8f97b88b5c7c9 60960 net extra krb5-telnetd_1.3.6-2sarge2_powerpc.deb 3da7d6b0f452ed3bd965a40af1aa05d0 125498 net optional krb5-kdc_1.3.6-2sarge2_powerpc.deb dfc24bf1fa734b793b11d8d6a53151c5 104444 net optional krb5-admin-server_1.3.6-2sarge2_powerpc.deb 335a30c147ae013565c1403a3c717750 634188 libdevel extra libkrb5-dev_1.3.6-2sarge2_powerpc.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.2.4 (GNU/Linux) iD8DBQFC1Cjf/I12czyGJg8RAndcAKCeJI9Zo+2KtGyG2pIJgVJg/vb66wCffqZQ UffVgv0N2fpcKfvGP2e4dSk= =05Uy -----END PGP SIGNATURE----- Accepted: krb5-admin-server_1.3.6-2sarge2_powerpc.deb to pool/main/k/krb5/krb5-admin-server_1.3.6-2sarge2_powerpc.deb krb5-clients_1.3.6-2sarge2_powerpc.deb to pool/main/k/krb5/krb5-clients_1.3.6-2sarge2_powerpc.deb krb5-doc_1.3.6-2sarge2_all.deb to pool/main/k/krb5/krb5-doc_1.3.6-2sarge2_all.deb krb5-ftpd_1.3.6-2sarge2_powerpc.deb to pool/main/k/krb5/krb5-ftpd_1.3.6-2sarge2_powerpc.deb krb5-kdc_1.3.6-2sarge2_powerpc.deb to pool/main/k/krb5/krb5-kdc_1.3.6-2sarge2_powerpc.deb krb5-rsh-server_1.3.6-2sarge2_powerpc.deb to pool/main/k/krb5/krb5-rsh-server_1.3.6-2sarge2_powerpc.deb krb5-telnetd_1.3.6-2sarge2_powerpc.deb to pool/main/k/krb5/krb5-telnetd_1.3.6-2sarge2_powerpc.deb krb5-user_1.3.6-2sarge2_powerpc.deb to pool/main/k/krb5/krb5-user_1.3.6-2sarge2_powerpc.deb krb5_1.3.6-2sarge2.diff.gz to pool/main/k/krb5/krb5_1.3.6-2sarge2.diff.gz krb5_1.3.6-2sarge2.dsc to pool/main/k/krb5/krb5_1.3.6-2sarge2.dsc libkadm55_1.3.6-2sarge2_powerpc.deb to pool/main/k/krb5/libkadm55_1.3.6-2sarge2_powerpc.deb libkrb5-dev_1.3.6-2sarge2_powerpc.deb to pool/main/k/krb5/libkrb5-dev_1.3.6-2sarge2_powerpc.deb libkrb53_1.3.6-2sarge2_powerpc.deb to pool/main/k/krb5/libkrb53_1.3.6-2sarge2_powerpc.deb -- To UNSUBSCRIBE, email to debian-changes-REQUEST@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmaster@lists.debian.org