MIT Kerberos5 Implementation--Libraries

Edit Package krb5

Kerberos V5 is a trusted-third-party network authentication system,
which can improve your network's security by eliminating the insecure
practice of clear text passwords.

Refresh
Refresh
Source Files
Filename Size Changed
baselibs.conf 0000000094 94 Bytes
krb5-1.12-api.patch 0000001036 1.01 KB
krb5-1.12-buildconf.patch 0000002589 2.53 KB
krb5-1.12-ksu-path.patch 0000000437 437 Bytes
krb5-1.12-pam.patch 0000021636 21.1 KB
krb5-1.12-selinux-label.patch 0000029721 29 KB
krb5-1.14.3.tar.gz 0012279888 11.7 MB
krb5-1.14.3.tar.gz.asc 0000000648 648 Bytes
krb5-1.6.3-gssapi_improve_errormessages.dif 0000000664 664 Bytes
krb5-1.6.3-ktutil-manpage.dif 0000000840 840 Bytes
krb5-1.7-doublelog.patch 0000000674 674 Bytes
krb5-1.9-debuginfo.patch 0000001104 1.08 KB
krb5-1.9-manpaths.dif 0000000673 673 Bytes
krb5-fix_interposer.patch 0000007393 7.22 KB
krb5-mini.changes 0000059384 58 KB
krb5-mini.spec 0000013675 13.4 KB
krb5-rpmlintrc 0000000311 311 Bytes
krb5.changes 0000060756 59.3 KB
krb5.keyring 0000004459 4.35 KB
krb5.spec 0000017837 17.4 KB
vendor-files.tar.bz2 0000183189 179 KB
Revision 121 (latest revision is 173)
Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) accepted request 412764 from Ismail Dönmez's avatar Ismail Dönmez (namtrac) (revision 121)
- Upgrade from 1.14.2 to 1.14.3:
  * Improve some error messages
  * Improve documentation
  * Allow a principal with nonexistent policy to bypass the minimum
    password lifetime check, consistent with other aspects of
    nonexistent policies
  * Fix a rare KDC denial of service vulnerability when anonymous client
    principals are restricted to obtaining TGTs only [CVE-2016-3120]
  
- Upgrade from 1.14.2 to 1.14.3:
  * Improve some error messages
  * Improve documentation
  * Allow a principal with nonexistent policy to bypass the minimum
    password lifetime check, consistent with other aspects of
    nonexistent policies
  * Fix a rare KDC denial of service vulnerability when anonymous client
    principals are restricted to obtaining TGTs only [CVE-2016-3120]
Comments 2

Samu Voutilainen's avatar

Hi,

You may want to update krb5-server.logrotate file inside vendor-files.tar.bz2 to reload using systemd instead of /etc/init.d/ scripts. At least on my setup I have no legacy init.d scripts available.

For what it’s worth, this also applies to Leap 15.1 and probably 15.2.


Samuel Cabrero's avatar

Hi,

it is pending for approval https://build.opensuse.org/request/show/812027

The updates for Leap will follow soon.

Thanks

openSUSE Build Service is sponsored by