pkgsrc/security/mit-krb5
adam e9a9cefac0 Changes 1.8.4:
This is primarily a bugfix release.
Fix vulnerabilities:
* KDC uninitialized pointer crash [MITKRB5-SA-2010-006 CVE-2010-1322]
* kpropd denial of service [MITKRB5-SA-2011-001 CVE-2010-4022]
* KDC denial of service attacks [MITKRB5-SA-2011-002 CVE-2011-0281 CVE-2011-0282 CVE-2011-0283]
* KDC double-free when PKINIT enabled [MITKRB5-SA-2011-003 CVE-2011-0284]
* kadmind frees invalid pointer [MITKRB5-SA-2011-004 CVE-2011-0285]
Interoperability:
* Correctly encrypt GSSAPI forwarded credentials using the session key, not
  a subkey.
* Set NT-SRV-INST on TGS principal names as expected by some Windows Server
  Domain Controllers.
* Don't reject AP-REQ messages if their PAC doesn't validate; suppress the PAC
  instead.
* Correctly validate HMAC-MD5 checksums that use DES keys
2011-07-08 09:59:28 +00:00
..
files
patches Fix building with Clang 2011-06-01 09:57:23 +00:00
buildlink3.mk Changes 1.8.4: 2011-07-08 09:59:28 +00:00
builtin.mk Add builtin support for SunOS per PR#44597 2011-04-08 17:30:35 +00:00
DESCR Update MIT Kerberos to v1.8.3 with the latest security patches up to and 2011-03-22 23:31:04 +00:00
distinfo Changes 1.8.4: 2011-07-08 09:59:28 +00:00
Makefile Changes 1.8.4: 2011-07-08 09:59:28 +00:00
MESSAGE Update MIT Kerberos to v1.8.3 with the latest security patches up to and 2011-03-22 23:31:04 +00:00
PLIST Update MIT Kerberos to v1.8.3 with the latest security patches up to and 2011-03-22 23:31:04 +00:00