ELSA-2008-0181

ELSA-2008-0181 - Critical: krb5 security update

Type:SECURITY
Severity:CRITICAL
Release Date:2008-03-18

Description


[1.2.7-68]
- add preliminary patch to fix use of uninitialized pointer / double-free in
KDC (CVE-2008-0062,CVE-2008-0063) (#432620, #432621)
- add preliminary patch to fix incorrect handling of high-numbered
descriptors
in the RPC library (CVE-2008-0948) (#435087)


Related CVEs



Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 3 (i386) krb5-1.2.7-68.src.rpm68c97faf81ccd3942e6746a85db660fbELSA-2010-0423
krb5-devel-1.2.7-68.i386.rpm8a36f5efba921be9bbecf1326aa7158eELSA-2010-0423
krb5-libs-1.2.7-68.i386.rpm1fe799a0ebb4ea1901d75a133a966cdaELSA-2010-0423
krb5-server-1.2.7-68.i386.rpm3600fa76be3f6faa25e2c664ee589787ELSA-2010-0423
krb5-workstation-1.2.7-68.i386.rpm4e2fe545519f518a31061b93a5feee0eELSA-2010-0423
Oracle Linux 3 (x86_64) krb5-1.2.7-68.src.rpm68c97faf81ccd3942e6746a85db660fbELSA-2010-0423
krb5-devel-1.2.7-68.x86_64.rpmbfc01d4661d199bc610398828b50222eELSA-2010-0423
krb5-libs-1.2.7-68.i386.rpm1fe799a0ebb4ea1901d75a133a966cdaELSA-2010-0423
krb5-libs-1.2.7-68.x86_64.rpm7754d4fcc6462ee9c715706b06c0f042ELSA-2010-0423
krb5-server-1.2.7-68.x86_64.rpm1cc417a1b314d4d0c73565a8cf548ec8ELSA-2010-0423
krb5-workstation-1.2.7-68.x86_64.rpm1cb4670ca9009d9fbd93be73e117945cELSA-2010-0423



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete