[ Все A B C D E F G H I J K L M N O P Q R S T U V W X Y Z ]
×

Проект krb5-1.21.1-4.el9_5

Имя krb5
Эпоха 0
Версия 1.21.1
Релиз 4.el9_5
Сайт https://web.mit.edu/kerberos/www/
Лицензия MIT
Время сборки 2025-02-20 11:03:56
Хост сборки certified-builder01.msvsphere-os.ru
Краткое описание The Kerberos network authentication system
Репозитории OS
Полное описание Kerberos V5 is a trusted-third-party network authentication system, which can improve your network's security by eliminating the insecure practice of sending passwords over the network in unencrypted form.
Эррата
× Full screenshot
Пакеты link
Пакет Краткое описание Контрольная сумма SHA-256
x86_64
krb5-libs-1.21.1-4.el9_5.x86_64 The non-admin shared libraries used by Kerberos 5 ea5551ae9bbe84c1c9c1b3b20ec4f2d8c7b58636a2cc6016dc1e2960b6476020 download
krb5-pkinit-1.21.1-4.el9_5.x86_64 The PKINIT module for Kerberos 5 8376b650e97f23fc37cf7c374485893458296d3d34343da538adcb9bf88b3fa7 download
krb5-server-1.21.1-4.el9_5.x86_64 The KDC and related programs for Kerberos 5 ed3341a2404fd6597a24dccfae412cb285c32b5761bf168fb335a1876f39cf51 download
krb5-workstation-1.21.1-4.el9_5.x86_64 Kerberos 5 programs for use on workstations 8112a6e85a2fb197ab360fed33a288c192cb388434d9d73e98522bba430b0074 download
libkadm5-1.21.1-4.el9_5.x86_64 Kerberos 5 Administrative libraries de3a71e2a9931d56bc26e72d60d25af8272746ed2ad2ab43b99f2d5b2cebf9c2 download
i686
krb5-libs-1.21.1-4.el9_5.i686 The non-admin shared libraries used by Kerberos 5 9c365b6ec48db05865234c9631323f6b006ca65c6de2a121f40d1a3b0c79af1c download
krb5-pkinit-1.21.1-4.el9_5.i686 The PKINIT module for Kerberos 5 a51af70bd0935ae9f8d26ba6d7ec2316ecc8c26d8ec495375eec3ac17fa85055 download
krb5-server-1.21.1-4.el9_5.i686 The KDC and related programs for Kerberos 5 783865ee07eabe8ba23e9e43ed54b0d6bcd9d59ead27d214a823a750c71b613a download
libkadm5-1.21.1-4.el9_5.i686 Kerberos 5 Administrative libraries fced4ded33859ba0ccc5e6a374bdbe96585a8af9b9243ca9184ba4f16a03ec7a download
src
krb5-1.21.1-4.el9_5.src The Kerberos network authentication system 4e31f8f5f1113b37426671162f5a775b9d49ea447624388889279f7f7bb24264 download
История изменений link
* Thu Oct 17 2024 Julien Rische <jrische@redhat.com> - 1.21.1-4
- libkrad: implement support for Message-Authenticator (CVE-2024-3596)
  Resolves: RHEL-55423
- Fix various issues detected by static analysis
  Resolves: RHEL-58216
- Remove RSA protocol for PKINIT
  Resolves: RHEL-15323

* Fri Jul 05 2024 Julien Rische <jrische@redhat.com> - 1.21.1-3
- CVE-2024-37370 CVE-2024-37371
  Fix vulnerabilities in GSS message token handling
  Resolves: RHEL-45402 RHEL-45392

* Wed Mar 20 2024 Julien Rische <jrische@redhat.com> - 1.21.1-2
- Fix memory leak in GSSAPI interface
  Resolves: RHEL-27251
- Fix memory leak in PMAP RPC interface
  Resolves: RHEL-27245
- Fix memory leak in failing UTF-8 to UTF-16 re-encoding for PAC
  Resolves: RHEL-27253
- Make TCP waiting time configurable
  Resolves: RHEL-17132

* Tue Aug 08 2023 Julien Rische <jrische@redhat.com> - 1.21.1-1
- New upstream version (1.21.1)
- Fix double-free in KDC TGS processing (CVE-2023-39975)
- Add support for "pac_privsvr_enctype" KDB string attribute
  Resolves: rhbz#2060421

* Thu Jun 08 2023 Julien Rische <jrische@redhat.com> - 1.20.1-9
- Do not disable PKINIT if some of the well-known DH groups are unavailable
  Resolves: rhbz#2187722
- Make PKINIT CMS SHA-1 signature verification available in FIPS mode
  Resolves: rhbz#2155607
- Allow to set PAC ticket signature as optional
  Resolves: rhbz#2178298

* Wed Mar 15 2023 MSVSphere Packaging Team <packager@msvsphere.ru> - 1.20.1-8
- Rebuilt for MSVSphere 9.1.

* Wed Feb 22 2023 Julien Rische <jrische@redhat.com> - 1.20.1-8
- Fix datetime parsing in kadmin on s390x
  Resolves: rhbz#2169985

* Tue Feb 14 2023 Julien Rische <jrische@redhat.com> - 1.20.1-7
- Fix double free on kdb5_util key creation failure
  Resolves: rhbz#2166603

* Tue Jan 31 2023 Julien Rische <jrische@redhat.com> - 1.20.1-6
- Add support for MS-PAC extended KDC signature (CVE-2022-37967)
  Resolves: rhbz#2165827

* Thu Jan 19 2023 Julien Rische <jrische@redhat.com> - 1.20.1-5
- Bypass FIPS restrictions to use KRB5KDF in case AES SHA-1 HMAC is enabled
- Lazily load MD4/5 from OpenSSL if using RADIUS or RC4 enctype in FIPS mode
  Resolves: rhbz#2162461