pykerberos 1.1+svn10616-2ubuntu0.1 source package in Ubuntu

Changelog

pykerberos (1.1+svn10616-2ubuntu0.1) trusty-security; urgency=medium

  * SECURITY UPDATE: The checkPassword function does not authenticate the
    KDC it attempts to communicate with (LP: #1716429)
    - Add-KDC-authenticity-verification-support-CVE-2015-3206.patch
      retrieved from xenial version (1.1.5-2build1).
    - CVE-2015-3206
    - debian/NEWS: add explanation of issue and default chosen

 -- Mathieu Lafon <email address hidden>  Thu, 05 Oct 2017 09:32:55 +0200

Upload details

Uploaded by:
Mathieu Lafon on 2017-10-13
Sponsored by:
Steve Beattie
Uploaded to:
Trusty
Original maintainer:
Ubuntu Developers
Architectures:
any
Section:
python
Urgency:
Medium Urgency

See full publishing history Publishing

Series Pocket Published Component Section
Trusty updates on 2018-02-06 universe python
Trusty security on 2018-02-06 universe python

Downloads

File Size SHA-256 Checksum
pykerberos_1.1+svn10616.orig.tar.gz 29.4 KiB e82bb0508cc21ce4281af7e6fd9243cd1a8b4052b9b948781297aa9d8c183d28
pykerberos_1.1+svn10616-2ubuntu0.1.debian.tar.gz 6.7 KiB 3defab9701537aee4f9e099ce2bfc75763a319a9c97a1d15fe44015c161a1a85
pykerberos_1.1+svn10616-2ubuntu0.1.dsc 2.1 KiB 4fcbc43139ef17651bdf834c15139e88ee34c8f574fc9c962cf5e4d81e70df5a

View changes file

Binary packages built by this source

python-kerberos: GSSAPI interface module for Python

 This Python package is a high-level wrapper for Kerberos (GSSAPI) operations.
 The goal is to avoid having to build a module that wraps the entire
 Kerberos.framework, and instead offer a limited set of functions that do what
 is needed for client/server Kerberos authentication based on
 <http://www.ietf.org/rfc/rfc4559.txt>.
 .
 Much of the C-code here is adapted from Apache's mod_auth_kerb-5.0rc7.

python-kerberos-dbgsym: debug symbols for package python-kerberos

 This Python package is a high-level wrapper for Kerberos (GSSAPI) operations.
 The goal is to avoid having to build a module that wraps the entire
 Kerberos.framework, and instead offer a limited set of functions that do what
 is needed for client/server Kerberos authentication based on
 <http://www.ietf.org/rfc/rfc4559.txt>.
 .
 Much of the C-code here is adapted from Apache's mod_auth_kerb-5.0rc7.