Format: 1.8 Date: Tue, 23 Feb 2016 08:54:09 -0500 Source: krb5 Binary: krb5-user krb5-kdc krb5-kdc-ldap krb5-admin-server krb5-multidev libkrb5-dev libkrb5-dbg krb5-pkinit krb5-otp krb5-k5tls krb5-doc libkrb5-3 libgssapi-krb5-2 libgssrpc4 libkadm5srv-mit9 libkadm5clnt-mit9 libk5crypto3 libkdb5-8 libkrb5support0 libkrad0 krb5-gss-samples krb5-locales libkrad-dev Architecture: amd64 all amd64_translations Version: 1.13.2+dfsg-5 Distribution: xenial-proposed Urgency: high Maintainer: Launchpad Build Daemon Changed-By: Sam Hartman Description: krb5-admin-server - MIT Kerberos master server (kadmind) krb5-doc - Documentation for MIT Kerberos krb5-gss-samples - MIT Kerberos GSS Sample applications krb5-k5tls - TLS plugin for MIT Kerberos krb5-kdc - MIT Kerberos key server (KDC) krb5-kdc-ldap - MIT Kerberos key server (KDC) LDAP plugin krb5-locales - Internationalization support for MIT Kerberos krb5-multidev - Development files for MIT Kerberos without Heimdal conflict krb5-otp - OTP plugin for MIT Kerberos krb5-pkinit - PKINIT plugin for MIT Kerberos krb5-user - Basic programs to authenticate using MIT Kerberos libgssapi-krb5-2 - MIT Kerberos runtime libraries - krb5 GSS-API Mechanism libgssrpc4 - MIT Kerberos runtime libraries - GSS enabled ONCRPC libk5crypto3 - MIT Kerberos runtime libraries - Crypto Library libkadm5clnt-mit9 - MIT Kerberos runtime libraries - Administration Clients libkadm5srv-mit9 - MIT Kerberos runtime libraries - KDC and Admin Server libkdb5-8 - MIT Kerberos runtime libraries - Kerberos database libkrad-dev - MIT Kerberos RADIUS Library Development libkrad0 - MIT Kerberos runtime libraries - RADIUS library libkrb5-3 - MIT Kerberos runtime libraries libkrb5-dbg - Debugging files for MIT Kerberos libkrb5-dev - Headers and development libraries for MIT Kerberos libkrb5support0 - MIT Kerberos runtime libraries - Support library Closes: 813126 813127 813296 Changes: krb5 (1.13.2+dfsg-5) unstable; urgency=high . * Security Update * Verify decoded kadmin C strings [CVE-2015-8629] CVE-2015-8629: An authenticated attacker can cause kadmind to read beyond the end of allocated memory by sending a string without a terminating zero byte. Information leakage may be possible for an attacker with permission to modify the database. (Closes: #813296) * Check for null kadm5 policy name [CVE-2015-8630] CVE-2015-8630: An authenticated attacker with permission to modify a principal entry can cause kadmind to dereference a null pointer by supplying a null policy value but including KADM5_POLICY in the mask. (Closes: #813127) * Fix leaks in kadmin server stubs [CVE-2015-8631] CVE-2015-8631: An authenticated attacker can cause kadmind to leak memory by supplying a null principal name in a request which uses one. Repeating these requests will eventually cause kadmind to exhaust all available memory. (Closes: #813126) Checksums-Sha1: 0189b5d2a1d2d6e79d371519711e538cb369d41f 1094 krb5-admin-server-dbgsym_1.13.2+dfsg-5_amd64.ddeb 17bf3ae7fe53b6b2448e0c0fc04baf940ddf3b2f 81212 krb5-admin-server_1.13.2+dfsg-5_amd64.deb c0c7a8aa6ddf99416936975aa667177119c34b4b 2083394 krb5-doc_1.13.2+dfsg-5_all.deb f42de5c74d37475928409c8c3771b8fe27afe9b7 1032 krb5-gss-samples-dbgsym_1.13.2+dfsg-5_amd64.ddeb c6fc8d81177b7f0af1a0c8fc78fc55a6c638d643 26900 krb5-gss-samples_1.13.2+dfsg-5_amd64.deb 1b46888f5a492f5cb77437363ff3cf0f1971e94b 1056 krb5-k5tls-dbgsym_1.13.2+dfsg-5_amd64.ddeb b19157153e8e89285d64e49e8e92c5242de9340b 15780 krb5-k5tls_1.13.2+dfsg-5_amd64.deb 9d5804d1534b472d6cad71f7a68c5c39e5998839 1036 krb5-kdc-dbgsym_1.13.2+dfsg-5_amd64.ddeb 913a6b2bf036920249e5873b9abc11cd7bc41092 1068 krb5-kdc-ldap-dbgsym_1.13.2+dfsg-5_amd64.ddeb d57fdead846827ede1f20bdb87a540b2b8db6c9a 79728 krb5-kdc-ldap_1.13.2+dfsg-5_amd64.deb 5fdf60fe0aff32c6e15475d978418f2954ff3542 175656 krb5-kdc_1.13.2+dfsg-5_amd64.deb e637e28649a201e60aabf0eab8faa42588be24d2 13152 krb5-locales_1.13.2+dfsg-5_all.deb 201f6c86737f7031f3787e71fb4e11a6a3deeff3 1086 krb5-multidev-dbgsym_1.13.2+dfsg-5_amd64.ddeb 82df55b4e4cb4647cb1786d19ecd07ff0af35950 113490 krb5-multidev_1.13.2+dfsg-5_amd64.deb 6afcae08786de8ebaaf4fb85bbe72dd10179901f 1058 krb5-otp-dbgsym_1.13.2+dfsg-5_amd64.ddeb 28ffffefcf0b76bbeb453e90cfc045c18a4f5ba5 17546 krb5-otp_1.13.2+dfsg-5_amd64.deb 0c3fbb7189cdf57e2519c98cdcabbeabae123a9d 1066 krb5-pkinit-dbgsym_1.13.2+dfsg-5_amd64.ddeb a7b1dfa93e70c88238584e243bd50863d95672d6 52188 krb5-pkinit_1.13.2+dfsg-5_amd64.deb 6c50ef61a7da5f496c46243e8268d561feaa43f9 996 krb5-user-dbgsym_1.13.2+dfsg-5_amd64.ddeb 4ce48cffa638d2488188f53a15932085fb735b04 98588 krb5-user_1.13.2+dfsg-5_amd64.deb ce0c801f725672414cd551e9e1e821326dbbd612 62916 krb5_1.13.2+dfsg-5_amd64_translations.tar.gz a442c1f307b60a37b6649531a74df3fbf8c2e633 988 libgssapi-krb5-2-dbgsym_1.13.2+dfsg-5_amd64.ddeb 34b70f9f8b0a905129e3e9900289aa397ee8b704 120218 libgssapi-krb5-2_1.13.2+dfsg-5_amd64.deb 4d3e4bde3b04c710e05610c5d7f720b5dd7ecf54 994 libgssrpc4-dbgsym_1.13.2+dfsg-5_amd64.ddeb 3bc43af9ce8dfdb283326135084e6d04f36ef983 54434 libgssrpc4_1.13.2+dfsg-5_amd64.deb 7cc4509082d739b3f673113fcbce395e80602795 982 libk5crypto3-dbgsym_1.13.2+dfsg-5_amd64.ddeb 325f32b0b82a7f030dc142df42846cb528f40066 81026 libk5crypto3_1.13.2+dfsg-5_amd64.deb 178bf1febdb8f4c9df410788c3e1a54b07fe34cf 986 libkadm5clnt-mit9-dbgsym_1.13.2+dfsg-5_amd64.ddeb 9d20cf33e3730bc129e3b5d4010dfb19898cb5f7 36510 libkadm5clnt-mit9_1.13.2+dfsg-5_amd64.deb 6388370a6ae858af2c7e3171f522fe71c1b0f815 978 libkadm5srv-mit9-dbgsym_1.13.2+dfsg-5_amd64.ddeb bfce0a91ecc469b75a89cfe4a0871c36f056b57b 51132 libkadm5srv-mit9_1.13.2+dfsg-5_amd64.deb 59cefe524fcabd194e8543e52aad39c3f9ef7361 960 libkdb5-8-dbgsym_1.13.2+dfsg-5_amd64.ddeb 8838d658be1d68180f09294aa8eabd1fec3948cf 37096 libkdb5-8_1.13.2+dfsg-5_amd64.deb 979f2fe8d3826c563a81b846dbe87fdc91c2bd3a 840 libkrad-dev-dbgsym_1.13.2+dfsg-5_amd64.ddeb ba0e34326576e86d8c3b97db9aa94e935beb11d3 12022 libkrad-dev_1.13.2+dfsg-5_amd64.deb cc437aa617b6fab83e2c529e941d35e8cdd0a28b 974 libkrad0-dbgsym_1.13.2+dfsg-5_amd64.ddeb 0aee9593e0bbc78b015daca256e4c389bc56288e 21268 libkrad0_1.13.2+dfsg-5_amd64.deb c9a93d9ffe3aff26332abe7fc076c7a502ab4a48 982 libkrb5-3-dbgsym_1.13.2+dfsg-5_amd64.ddeb e43bd93a4100e995f2fcc2b752d8a543af939ba2 272804 libkrb5-3_1.13.2+dfsg-5_amd64.deb 61dea5be07268876c53a2888177ef5b2d3bf8a60 1491452 libkrb5-dbg_1.13.2+dfsg-5_amd64.deb ec099d1abf4c22a1487ac554c3d9bfa112cc31b9 988 libkrb5-dev-dbgsym_1.13.2+dfsg-5_amd64.ddeb 9a81e5efc241c6d069ccd55b8b04e7cbb61ae949 11548 libkrb5-dev_1.13.2+dfsg-5_amd64.deb e193e98437688dbe976a66b95f6d8237b72a0026 978 libkrb5support0-dbgsym_1.13.2+dfsg-5_amd64.ddeb 1eef35d275dd333ddf7cd0174a2ac6da34cecef0 30716 libkrb5support0_1.13.2+dfsg-5_amd64.deb Checksums-Sha256: e17e1249abdd0d5a2b19b1e6747a99e6267708910dc5608f8ff10619b12b1b31 1094 krb5-admin-server-dbgsym_1.13.2+dfsg-5_amd64.ddeb 6fb9437c1ff30e579ae0f7890177eb940402ac9ec32dfb01fbffd206dae58424 81212 krb5-admin-server_1.13.2+dfsg-5_amd64.deb ddc698537b8b4790d25f196991b5b63f9538538349aebdf404b25a22c7ead1bb 2083394 krb5-doc_1.13.2+dfsg-5_all.deb 6a6091876edf22d60e125f5edbc0b30d9596e6f36ad8a6dd1ff6f75c1cc0a252 1032 krb5-gss-samples-dbgsym_1.13.2+dfsg-5_amd64.ddeb 7c6ceb065e551ef9a1b818d14d8d11600b5b75eab55a36f26530d79ebcc77446 26900 krb5-gss-samples_1.13.2+dfsg-5_amd64.deb 5b8415b862d7458241ec288addda2c6c7af4f1e4cc500ece40d974a7192976ea 1056 krb5-k5tls-dbgsym_1.13.2+dfsg-5_amd64.ddeb 7f321bff1d0085ea2662d94bce512cd536e46243dede5db4a7c73431dcbc37c4 15780 krb5-k5tls_1.13.2+dfsg-5_amd64.deb 04526e6ddd8cd7720d39ac8e8457cb15e6e2b0c0523cbe6b76b775dcb2de1b14 1036 krb5-kdc-dbgsym_1.13.2+dfsg-5_amd64.ddeb e2264ff4fde5e2f39cd315ed950eadf2b865db12bf1d1878b3eecc5988b4fe93 1068 krb5-kdc-ldap-dbgsym_1.13.2+dfsg-5_amd64.ddeb 35506539659d3d5cf9189adb72681d1e52cfa0b9159c8545e645546bbd3e1e5d 79728 krb5-kdc-ldap_1.13.2+dfsg-5_amd64.deb 72ceeadb79a45fcfba3d0efac621f842b1964048d2c65e4e931b677036fdaabe 175656 krb5-kdc_1.13.2+dfsg-5_amd64.deb b77085bdc2bcaa296c4cf135e94c9f9115118acd62dff58292a758004de88f71 13152 krb5-locales_1.13.2+dfsg-5_all.deb 0411f792f3f6cc7f16848b80088100a0c5f1285236dd337da15d15cbc81bedcd 1086 krb5-multidev-dbgsym_1.13.2+dfsg-5_amd64.ddeb aebff16f8638c9b8516d7b2bd3b9a24b48245db84db8ed43e012d87441e679b0 113490 krb5-multidev_1.13.2+dfsg-5_amd64.deb ca7a8b68f33c4908bbfeb497e7e6ced25e902a60a8e057c04039429ba16b32c1 1058 krb5-otp-dbgsym_1.13.2+dfsg-5_amd64.ddeb a64ad4c6c08036358fad702467c9a6e879a0a3b8e0fb2df003e7840123de226c 17546 krb5-otp_1.13.2+dfsg-5_amd64.deb 0d9344022299931a584ce082331c4a03622b5dac8d733865d5cd158c5fbd10ff 1066 krb5-pkinit-dbgsym_1.13.2+dfsg-5_amd64.ddeb 41251b4ad04e8bd945020cd4fcbf88478e767a2739619291d8247d3f26569fee 52188 krb5-pkinit_1.13.2+dfsg-5_amd64.deb 4434b4507c5706683d69c96c9e80fb543c56cb40321b167c2cde6d896a2ecdb8 996 krb5-user-dbgsym_1.13.2+dfsg-5_amd64.ddeb 061775d5d5aab380496b66ec5b678073273dc726b6c06fdea23083f0227905fb 98588 krb5-user_1.13.2+dfsg-5_amd64.deb a79c9011f15ef31cce23d3103ef4e5d05a581cf7808234e4988722c14f1ac8a1 62916 krb5_1.13.2+dfsg-5_amd64_translations.tar.gz 8da6f9391026a6e5aed5bee417c826ea6378c2bd2ced9efda38929c432f4b5e5 988 libgssapi-krb5-2-dbgsym_1.13.2+dfsg-5_amd64.ddeb 6b2c364ccd17fc152fd7f52e574c3e7a1d848b452a77bf899bafa6898150cd4f 120218 libgssapi-krb5-2_1.13.2+dfsg-5_amd64.deb ed9e43678884a1b8cc949b81c4a5109128963ff930007e76fbdd9064b7fe7df9 994 libgssrpc4-dbgsym_1.13.2+dfsg-5_amd64.ddeb a75ab88c5ec95720da1af6ca9682ec08c608fe030588e99534384ed87b1ccebc 54434 libgssrpc4_1.13.2+dfsg-5_amd64.deb 3ba755f283cf1d135b1bf2d6ca32cd49dd5598927afbf313af641c21a89c053f 982 libk5crypto3-dbgsym_1.13.2+dfsg-5_amd64.ddeb a54a1e47bee50aab1479973fceff85cb40719c42b1567c2684221042f258e8c0 81026 libk5crypto3_1.13.2+dfsg-5_amd64.deb 2d71945e9f49d310bbc6982beddc1b2b6de1e99bc7894f2db6dbbf4759bca417 986 libkadm5clnt-mit9-dbgsym_1.13.2+dfsg-5_amd64.ddeb 6b68ea662b4949267ce680dd15e7d377ced84c912e710b3261ab34fcd2b9e4df 36510 libkadm5clnt-mit9_1.13.2+dfsg-5_amd64.deb 6ddc25b34f2ed9dde94cef6bb276f20a483bfe2b883e6427fde42eb835a39fae 978 libkadm5srv-mit9-dbgsym_1.13.2+dfsg-5_amd64.ddeb 1d5e150060e9dae987d4ae697e757602273e9ff4e7751270e113d98b7e06e398 51132 libkadm5srv-mit9_1.13.2+dfsg-5_amd64.deb fdbd47d0a9c721e2f77f1d6a2c95acb42d4116e1b0ff376c516b0ecdd96c4739 960 libkdb5-8-dbgsym_1.13.2+dfsg-5_amd64.ddeb b2e7469ef784d6cdd5857e463d6118b7664aa9983865391d7c60d851e1194ba3 37096 libkdb5-8_1.13.2+dfsg-5_amd64.deb 534fc105c831e336de52ddb1f67d52f54f5b39aca62fe71d7034eb60a10111e1 840 libkrad-dev-dbgsym_1.13.2+dfsg-5_amd64.ddeb df1ab59f88ee6b51d5b027d49f65b5c18911b6342b60cb300fac4441d0123adf 12022 libkrad-dev_1.13.2+dfsg-5_amd64.deb 63549a1f363344447c1ffa30c5498f762f71ddb4cf41397ee2d0ed3ac7271a76 974 libkrad0-dbgsym_1.13.2+dfsg-5_amd64.ddeb 40e5bf434169ffde3e43b5a9bfe7b65758069f35281b6b4bfd2cb796ea4136a8 21268 libkrad0_1.13.2+dfsg-5_amd64.deb 624dc1abc77e14e2ce41edf9e124a96c98363657eebfad7af10a6d00d8797263 982 libkrb5-3-dbgsym_1.13.2+dfsg-5_amd64.ddeb d04b900a986f94212d0c54330767b73423e1f1147a9b6fce330733a9c0f9e8b0 272804 libkrb5-3_1.13.2+dfsg-5_amd64.deb 9e7869919d8cce51e798e904366bfa98dc7467790d46cfebe90722ded179c125 1491452 libkrb5-dbg_1.13.2+dfsg-5_amd64.deb e072d797463a11b9e8079c5290e8c541c618e2ba3ce2461202d41b0d964322ed 988 libkrb5-dev-dbgsym_1.13.2+dfsg-5_amd64.ddeb 312c506c9574b4c63f5b051b3165a3eb61206e72775f0a652ea08fca50ca66c6 11548 libkrb5-dev_1.13.2+dfsg-5_amd64.deb 724ffa4c98282b2e1d6ccaf07872bc793f800d861cae833474aa4a21c96f0c0e 978 libkrb5support0-dbgsym_1.13.2+dfsg-5_amd64.ddeb ef6392a8c629cc403bbc3b0be4f628088f3c2573616d656698a49445189c6eed 30716 libkrb5support0_1.13.2+dfsg-5_amd64.deb Files: 71ff70b91318eff81da7e0478fe3b931 1094 net extra krb5-admin-server-dbgsym_1.13.2+dfsg-5_amd64.ddeb 0a8a30cda3177ddf75b5703c5d73913b 81212 net optional krb5-admin-server_1.13.2+dfsg-5_amd64.deb 174604f7ff1a70bbc3a3b0e0db51dc86 2083394 doc optional krb5-doc_1.13.2+dfsg-5_all.deb 60a9d7a93aef582537f03fe2ab2158ab 1032 net extra krb5-gss-samples-dbgsym_1.13.2+dfsg-5_amd64.ddeb d71502cd2f831c33fbb53a58c04c1e4b 26900 net extra krb5-gss-samples_1.13.2+dfsg-5_amd64.deb f34118fecd383d525e02da3d0583bc56 1056 net extra krb5-k5tls-dbgsym_1.13.2+dfsg-5_amd64.ddeb e394d743070aea927053e873d54e2a43 15780 net extra krb5-k5tls_1.13.2+dfsg-5_amd64.deb bfc2dffc6a3ea5998d4593d0daad9850 1036 net extra krb5-kdc-dbgsym_1.13.2+dfsg-5_amd64.ddeb e4e4085b28126440800ad7ded8e0fa40 1068 net extra krb5-kdc-ldap-dbgsym_1.13.2+dfsg-5_amd64.ddeb 4f006c3931a908a4a3f2a2982bf49456 79728 net extra krb5-kdc-ldap_1.13.2+dfsg-5_amd64.deb c2b8a5f14e1431e57dd79680edee8958 175656 net optional krb5-kdc_1.13.2+dfsg-5_amd64.deb 1e36d6a5f519891acdd3bdaf78733acd 13152 localization standard krb5-locales_1.13.2+dfsg-5_all.deb acf8338501dfab3b653c470d72d1ff66 1086 libdevel extra krb5-multidev-dbgsym_1.13.2+dfsg-5_amd64.ddeb 0fe1d3c98f69245bd93ce0e3ccc4bcdd 113490 libdevel optional krb5-multidev_1.13.2+dfsg-5_amd64.deb 9f9a2b73b6c808c0453858d93605709f 1058 net extra krb5-otp-dbgsym_1.13.2+dfsg-5_amd64.ddeb 0bfe61ec23fb72bc7a9c665322c5fda3 17546 net extra krb5-otp_1.13.2+dfsg-5_amd64.deb 1b634eeeca4d4b04fbaa39fd956b5f27 1066 net extra krb5-pkinit-dbgsym_1.13.2+dfsg-5_amd64.ddeb 0ee2df4399b3da7ac46cf9934fdeab8b 52188 net extra krb5-pkinit_1.13.2+dfsg-5_amd64.deb cb309667caf16a88698c628474d0ee40 996 net extra krb5-user-dbgsym_1.13.2+dfsg-5_amd64.ddeb 33c2573c13fab97ac7c5886deb93a791 98588 net optional krb5-user_1.13.2+dfsg-5_amd64.deb 362b74e0d46859524b29cb5228ca28ee 62916 raw-translations - krb5_1.13.2+dfsg-5_amd64_translations.tar.gz 6d6ce75634c56fa0f8197d6e29e88b9b 988 libs extra libgssapi-krb5-2-dbgsym_1.13.2+dfsg-5_amd64.ddeb b2f77839219acfccc9b93895bf6a7e93 120218 libs standard libgssapi-krb5-2_1.13.2+dfsg-5_amd64.deb 95d3de0f15f9513d3a78e0cc09f945d6 994 libs extra libgssrpc4-dbgsym_1.13.2+dfsg-5_amd64.ddeb e60d9e49f8148c5008638423052f9af2 54434 libs standard libgssrpc4_1.13.2+dfsg-5_amd64.deb 0f7ddd169ebb384932d40faea23d007e 982 libs extra libk5crypto3-dbgsym_1.13.2+dfsg-5_amd64.ddeb 4856ad3783e8ddd2ba43fc01da926d75 81026 libs standard libk5crypto3_1.13.2+dfsg-5_amd64.deb 0709073d1641a203cd776107b732b748 986 libs extra libkadm5clnt-mit9-dbgsym_1.13.2+dfsg-5_amd64.ddeb d36081ace0e1105a5099ada1d24a601d 36510 libs standard libkadm5clnt-mit9_1.13.2+dfsg-5_amd64.deb 17fca9d0f596c7319ec10463f807ea91 978 libs extra libkadm5srv-mit9-dbgsym_1.13.2+dfsg-5_amd64.ddeb 4485be2c86ba1e897c9bf7f0db0d43df 51132 libs standard libkadm5srv-mit9_1.13.2+dfsg-5_amd64.deb e9b854ab74978bb870403b510dc61db8 960 libs extra libkdb5-8-dbgsym_1.13.2+dfsg-5_amd64.ddeb d18575913f5fbed11392c5e80940c5c1 37096 libs standard libkdb5-8_1.13.2+dfsg-5_amd64.deb 2888f7565cf026ef2f1a61860002b1bc 840 libdevel extra libkrad-dev-dbgsym_1.13.2+dfsg-5_amd64.ddeb 9fa64b0b0e41818801f5e4b1f53bdc1f 12022 libdevel extra libkrad-dev_1.13.2+dfsg-5_amd64.deb 0bbc7c0222f93b475af1499114ced627 974 libs extra libkrad0-dbgsym_1.13.2+dfsg-5_amd64.ddeb 5fac463d6282eff8a7ff337d8026d419 21268 libs standard libkrad0_1.13.2+dfsg-5_amd64.deb e20addb6f2962ae273609f8c7f8a6f3e 982 libs extra libkrb5-3-dbgsym_1.13.2+dfsg-5_amd64.ddeb 4a7f5cca6617235790d51460e3d01b8e 272804 libs standard libkrb5-3_1.13.2+dfsg-5_amd64.deb 74f798151d4245a4931e4b41b004d402 1491452 debug extra libkrb5-dbg_1.13.2+dfsg-5_amd64.deb ad0baeeccad8dc883e4c2af79f65d819 988 libdevel extra libkrb5-dev-dbgsym_1.13.2+dfsg-5_amd64.ddeb a180b1e2bd1e305f95cc19526fc99b62 11548 libdevel extra libkrb5-dev_1.13.2+dfsg-5_amd64.deb 8ad1d1fea5444fb6724e01ccb013cb23 978 libs extra libkrb5support0-dbgsym_1.13.2+dfsg-5_amd64.ddeb e0f9412de4fc2983ffc7bd90c4ce661f 30716 libs standard libkrb5support0_1.13.2+dfsg-5_amd64.deb