Format: 1.8 Date: Wed, 09 Aug 2017 12:19:50 -0400 Source: krb5 Binary: krb5-user krb5-kdc krb5-kdc-ldap krb5-admin-server krb5-kpropd krb5-multidev libkrb5-dev libkrb5-dbg krb5-pkinit krb5-otp krb5-k5tls krb5-doc libkrb5-3 libgssapi-krb5-2 libgssrpc4 libkadm5srv-mit11 libkadm5clnt-mit11 libk5crypto3 libkdb5-8 libkrb5support0 libkrad0 krb5-gss-samples krb5-locales libkrad-dev Architecture: source Version: 1.15-1+deb9u1 Distribution: xenial Urgency: emergency Maintainer: Sam Hartman Changed-By: tanyuliang Description: krb5-admin-server - MIT Kerberos master server (kadmind) krb5-doc - documentation for MIT Kerberos krb5-gss-samples - MIT Kerberos GSS Sample applications krb5-k5tls - TLS plugin for MIT Kerberos krb5-kdc - MIT Kerberos key server (KDC) krb5-kdc-ldap - MIT Kerberos key server (KDC) LDAP plugin krb5-kpropd - MIT Kerberos key server (KDC) krb5-locales - internationalization support for MIT Kerberos krb5-multidev - development files for MIT Kerberos without Heimdal conflict krb5-otp - OTP plugin for MIT Kerberos krb5-pkinit - PKINIT plugin for MIT Kerberos krb5-user - basic programs to authenticate using MIT Kerberos libgssapi-krb5-2 - MIT Kerberos runtime libraries - krb5 GSS-API Mechanism libgssrpc4 - MIT Kerberos runtime libraries - GSS enabled ONCRPC libk5crypto3 - MIT Kerberos runtime libraries - Crypto Library libkadm5clnt-mit11 - MIT Kerberos runtime libraries - Administration Clients libkadm5srv-mit11 - MIT Kerberos runtime libraries - KDC and Admin Server libkdb5-8 - MIT Kerberos runtime libraries - Kerberos database libkrad-dev - MIT Kerberos RADIUS Library Development libkrad0 - MIT Kerberos runtime libraries - RADIUS library libkrb5-3 - MIT Kerberos runtime libraries libkrb5-dbg - debugging files for MIT Kerberos libkrb5-dev - headers and development libraries for MIT Kerberos libkrb5support0 - MIT Kerberos runtime libraries - Support library Closes: 856307 860767 869260 Changes: krb5 (1.15-1+deb9u1) xenial; urgency=emergency . * CVE-2017-11368: Remote authenticated attackers can crash the KDC, Closes: #869260 * Upstream patches to fix startup if getaddrinfo() returns a wildcard v6 address, and to fix handling of explicitly specified v4 wildcard address; regression over previous versions, Closes: #860767 * Fix SRV lookups to respect udp_preference_limit, regression over previous versions with OTP, Closes: #856307 Checksums-Sha1: 47861f8bb62aeb94ddb1a27e423f48224db977d4 3094 krb5_1.15-1+deb9u1.dsc 07fb763082c21e9e597b39aac6413302e3aa7c97 9327157 krb5_1.15.orig.tar.gz f73a8dabd0668e741949d83bdd57a0e45c3fa845 145948 krb5_1.15-1+deb9u1.debian.tar.xz Checksums-Sha256: 47d40cbc986c6b5e0f4983747f1d6f44e86caf2c216f5b489e6e3e84cefabd5a 3094 krb5_1.15-1+deb9u1.dsc fd34752774c808ab4f6f864f935c49945f5a56b62240b1ad4ab1af7b4ded127c 9327157 krb5_1.15.orig.tar.gz 32e9e5ef25888b558f8389ebafa9e6ee09f4d1b7f9afd0ee0853c252dbb5f9de 145948 krb5_1.15-1+deb9u1.debian.tar.xz Files: d633ef2552f5d5e7d6da368f7588b405 3094 net standard krb5_1.15-1+deb9u1.dsc cd43a3316ebbb86b2a9020b485b1a819 9327157 net standard krb5_1.15.orig.tar.gz 21ae2f6498988ea6692bc16ae4f62a3e 145948 net standard krb5_1.15-1+deb9u1.debian.tar.xz