-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Mon, 16 Jul 2018 20:09:54 -0400 Source: krb5 Binary: krb5-user krb5-kdc krb5-kdc-ldap krb5-admin-server krb5-kpropd krb5-multidev libkrb5-dev libkrb5-dbg krb5-pkinit krb5-otp krb5-k5tls krb5-doc libkrb5-3 libgssapi-krb5-2 libgssrpc4 libkadm5srv-mit11 libkadm5clnt-mit11 libk5crypto3 libkdb5-9 libkrb5support0 libkrad0 krb5-gss-samples krb5-locales libkrad-dev Architecture: source Version: 1.16.1-1 Distribution: unstable Urgency: medium Maintainer: Sam Hartman <hartmans@debian.org> Changed-By: Sam Hartman <hartmans@debian.org> Description: krb5-admin-server - MIT Kerberos master server (kadmind) krb5-doc - documentation for MIT Kerberos krb5-gss-samples - MIT Kerberos GSS Sample applications krb5-k5tls - TLS plugin for MIT Kerberos krb5-kdc - MIT Kerberos key server (KDC) krb5-kdc-ldap - MIT Kerberos key server (KDC) LDAP plugin krb5-kpropd - MIT Kerberos key server (Slave KDC Support) krb5-locales - internationalization support for MIT Kerberos krb5-multidev - development files for MIT Kerberos without Heimdal conflict krb5-otp - OTP plugin for MIT Kerberos krb5-pkinit - PKINIT plugin for MIT Kerberos krb5-user - basic programs to authenticate using MIT Kerberos libgssapi-krb5-2 - MIT Kerberos runtime libraries - krb5 GSS-API Mechanism libgssrpc4 - MIT Kerberos runtime libraries - GSS enabled ONCRPC libk5crypto3 - MIT Kerberos runtime libraries - Crypto Library libkadm5clnt-mit11 - MIT Kerberos runtime libraries - Administration Clients libkadm5srv-mit11 - MIT Kerberos runtime libraries - KDC and Admin Server libkdb5-9 - MIT Kerberos runtime libraries - Kerberos database libkrad-dev - MIT Kerberos RADIUS Library Development libkrad0 - MIT Kerberos runtime libraries - RADIUS library libkrb5-3 - MIT Kerberos runtime libraries libkrb5-dbg - debugging files for MIT Kerberos libkrb5-dev - headers and development libraries for MIT Kerberos libkrb5support0 - MIT Kerberos runtime libraries - Support library Closes: 660767 887937 891869 Changes: krb5 (1.16.1-1) unstable; urgency=medium . * New upstream release - Fix flaws in LDAP DN checking, including a null dereference KDC crash which could be triggered by kadmin clients with administrative privileges [CVE-2018-5729, CVE-2018-5730], Closes: #891869 * Install kerberos.openldap.ldif, which is probably more useful than kerberos.ldif if you're hoping to use the Kerberos schema on Debian. Also, the bugs in kerberos.ldif have been corrected; Closes: #660767 * Suggest krb5-k5tls from krb5-user, Closes: #887937 * Merge dep8 tests, thanks Canonical and Andreas Hasenack (LP: #1677881) Checksums-Sha1: 4f32dc314a81b1c116b0722fad433df4755afe25 3318 krb5_1.16.1-1.dsc 8353f2d900a7d52499c7c2605d5e295f71dd5e67 9477480 krb5_1.16.1.orig.tar.gz 792dba93a577693e02be94b46b2ba998283a1e14 97608 krb5_1.16.1-1.debian.tar.xz Checksums-Sha256: 1f8cc61d7b29ba4887de0c17504aa64206207da6e46af50eecaef6d0e50a3dfd 3318 krb5_1.16.1-1.dsc 214ffe394e3ad0c730564074ec44f1da119159d94281bbec541dc29168d21117 9477480 krb5_1.16.1.orig.tar.gz 3881aefff33f5bfb54c96b1ccd5b20ded07d9890d8dc253acfc260e48d985236 97608 krb5_1.16.1-1.debian.tar.xz Files: 890fc0bc22d1e6150c358477812edb1a 3318 net optional krb5_1.16.1-1.dsc 848e9b80d6aaaa798e3f3df24b83c407 9477480 net optional krb5_1.16.1.orig.tar.gz 0935eb1e12e404a9a0c3cc7c2ce7c500 97608 net optional krb5_1.16.1-1.debian.tar.xz -----BEGIN PGP SIGNATURE----- iQEzBAEBCAAdFiEE9Li3nMNy++OFgPTCQe7SUh/WssoFAluzj+cACgkQQe7SUh/W sspa7Af+PLvROWCMRO3IK5L1J6cL0im5wQOCiKMh069X3CLOOXQ0inQxo3A8RA4y tZfQ20RW3C1V64BkTDq8qoVATfMRLANx1DqSqja2p0vULySBnnHUKkKD8C/fEJ1x wL5/MGf0HCG/K7fHHAawdQs0zn1TLaYf/JKkoQMXzaE87l6c8iOrNanz8rRf53uB G35wisFYrn0hQXCPER3VDamJZkBY97QezGQCqk5vH2UBrWSdtkSSdnZu5gxAnGLz HHVpNuIL5l1yiuMaPD7R2WAjI7dR7WR4iWrIyJaDoJX5+0NUqgX6y/wOz4T8ohna s8xTVeIgnEjyqZ60fBrfvPABiplCYw== =tWNz -----END PGP SIGNATURE-----