ELSA-2014-1245

ELSA-2014-1245 - krb5 security and bug fix update

Type:SECURITY
Impact:MODERATE
Release Date:2014-09-17

Description


[1.6.1-78.el5]
- gssapi: pull in upstream fix for a possible NULL dereference in spnego
(CVE-2014-4344, #1121509)

[1.6.1-77.el5]
- fix what appears to be a cosmetic error in the patch for self-tests
for CVE-2014-4341

[1.6.1-76.el5]
- run the backported self-tests, such as they are, for CVE-2014-4341

[1.6.1-75.el5]
- pull in backported fix for denial of service by injection of malformed
GSSAPI tokens (CVE-2014-4341, #1121509)

[1.6.1-74.el5]
- add patch based on one from Filip Krska to not call poll() with a negative
timeout when the caller's intent is for us to just stop calling it (#1089732)

[1.6.1-73.el5]
- incorporate backported upstream patch for remote crash of KDCs which serve
multiple realms simultaneously (RT#7756, CVE-2013-1418/CVE-2013-6800,

[1.6.1-72.el5]
- add part-backported fix to avoid possible use-after-free when encrypting
delegated creds (Jatin Nansi, #1004632)


Related CVEs


CVE-2013-1418
CVE-2014-4344
CVE-2013-6800
CVE-2014-4341

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 5 (i386) krb5-1.6.1-78.el5.src.rpm07a5b8df64d72d7f9f701f431b0e87b10fe40787e4024ced79904fa085f8e8b1ELSA-2014-1255ol5_i386_latest
krb5-1.6.1-78.el5.src.rpm07a5b8df64d72d7f9f701f431b0e87b10fe40787e4024ced79904fa085f8e8b1ELSA-2014-1255ol5_u11_i386_base
krb5-devel-1.6.1-78.el5.i386.rpmb09d3bcaf95ee9fef2b548e8dc852c96ed5ecac1f1d8981f5a9fa95934546afbELSA-2014-1255ol5_i386_latest
krb5-devel-1.6.1-78.el5.i386.rpmb09d3bcaf95ee9fef2b548e8dc852c96ed5ecac1f1d8981f5a9fa95934546afbELSA-2014-1255ol5_u11_i386_base
krb5-libs-1.6.1-78.el5.i386.rpm596bb94f44fa439e8657b7598dcc643887208920a8ec0d955db34fd2b48d0cccELSA-2014-1255ol5_i386_latest
krb5-libs-1.6.1-78.el5.i386.rpm596bb94f44fa439e8657b7598dcc643887208920a8ec0d955db34fd2b48d0cccELSA-2014-1255ol5_u11_i386_base
krb5-server-1.6.1-78.el5.i386.rpm3ea7dfc0211c845c15a723271f63a4088514158cd854416b8f0d71954d9b9c12ELSA-2014-1255ol5_i386_latest
krb5-server-1.6.1-78.el5.i386.rpm3ea7dfc0211c845c15a723271f63a4088514158cd854416b8f0d71954d9b9c12ELSA-2014-1255ol5_u11_i386_base
krb5-server-ldap-1.6.1-78.el5.i386.rpm191f636f1f811d6f5a7815e658ef14487ce61f054a2aeab0bf0f83215f2a8958ELSA-2014-1255ol5_i386_latest
krb5-server-ldap-1.6.1-78.el5.i386.rpm191f636f1f811d6f5a7815e658ef14487ce61f054a2aeab0bf0f83215f2a8958ELSA-2014-1255ol5_u11_i386_base
krb5-workstation-1.6.1-78.el5.i386.rpm6e6d6e047b63fb60cb46a4f0bbe2d6e8f88cc52dd03e0e284747e1ceaeb85edfELSA-2014-1255ol5_i386_latest
krb5-workstation-1.6.1-78.el5.i386.rpm6e6d6e047b63fb60cb46a4f0bbe2d6e8f88cc52dd03e0e284747e1ceaeb85edfELSA-2014-1255ol5_u11_i386_base
Oracle Linux 5 (ia64) krb5-1.6.1-78.el5.src.rpm07a5b8df64d72d7f9f701f431b0e87b10fe40787e4024ced79904fa085f8e8b1ELSA-2014-1255ol5_ia64_latest
krb5-1.6.1-78.el5.src.rpm07a5b8df64d72d7f9f701f431b0e87b10fe40787e4024ced79904fa085f8e8b1ELSA-2014-1255ol5_u11_ia64_base
krb5-devel-1.6.1-78.el5.ia64.rpmbcaf05099a9f7b0cd823402406d2eb55641d9d47d0ec4e8cf306c076cf24e7b6ELSA-2014-1255ol5_ia64_latest
krb5-devel-1.6.1-78.el5.ia64.rpmbcaf05099a9f7b0cd823402406d2eb55641d9d47d0ec4e8cf306c076cf24e7b6ELSA-2014-1255ol5_u11_ia64_base
krb5-libs-1.6.1-78.el5.i386.rpm596bb94f44fa439e8657b7598dcc643887208920a8ec0d955db34fd2b48d0cccELSA-2014-1255ol5_ia64_latest
krb5-libs-1.6.1-78.el5.i386.rpm596bb94f44fa439e8657b7598dcc643887208920a8ec0d955db34fd2b48d0cccELSA-2014-1255ol5_u11_ia64_base
krb5-libs-1.6.1-78.el5.ia64.rpmd53707c20e47818910be11ab43b87bc6a2d3d74a0b92a8f76cc9d3ac8755d5f8ELSA-2014-1255ol5_ia64_latest
krb5-libs-1.6.1-78.el5.ia64.rpmd53707c20e47818910be11ab43b87bc6a2d3d74a0b92a8f76cc9d3ac8755d5f8ELSA-2014-1255ol5_u11_ia64_base
krb5-server-1.6.1-78.el5.ia64.rpm1d11b7c3b3d563e420f12d9e8d5ba323e70878123d5d8321c764cb7d423ca4a3ELSA-2014-1255ol5_ia64_latest
krb5-server-1.6.1-78.el5.ia64.rpm1d11b7c3b3d563e420f12d9e8d5ba323e70878123d5d8321c764cb7d423ca4a3ELSA-2014-1255ol5_u11_ia64_base
krb5-server-ldap-1.6.1-78.el5.ia64.rpm3284e042dae43941ffbb36c3fb5da09d6ca859bd527b93ba6c3c2e17c85892cbELSA-2014-1255ol5_ia64_latest
krb5-server-ldap-1.6.1-78.el5.ia64.rpm3284e042dae43941ffbb36c3fb5da09d6ca859bd527b93ba6c3c2e17c85892cbELSA-2014-1255ol5_u11_ia64_base
krb5-workstation-1.6.1-78.el5.ia64.rpmc55403090c61eef11fd3eb8dd367f314ac4182b97153f3ec877eb7cba93b72b3ELSA-2014-1255ol5_ia64_latest
krb5-workstation-1.6.1-78.el5.ia64.rpmc55403090c61eef11fd3eb8dd367f314ac4182b97153f3ec877eb7cba93b72b3ELSA-2014-1255ol5_u11_ia64_base
Oracle Linux 5 (x86_64) krb5-1.6.1-78.el5.src.rpm07a5b8df64d72d7f9f701f431b0e87b10fe40787e4024ced79904fa085f8e8b1ELSA-2014-1255ol5_u11_x86_64_base
krb5-1.6.1-78.el5.src.rpm07a5b8df64d72d7f9f701f431b0e87b10fe40787e4024ced79904fa085f8e8b1ELSA-2014-1255ol5_x86_64_latest
krb5-devel-1.6.1-78.el5.i386.rpmb09d3bcaf95ee9fef2b548e8dc852c96ed5ecac1f1d8981f5a9fa95934546afbELSA-2014-1255ol5_u11_x86_64_base
krb5-devel-1.6.1-78.el5.i386.rpmb09d3bcaf95ee9fef2b548e8dc852c96ed5ecac1f1d8981f5a9fa95934546afbELSA-2014-1255ol5_x86_64_latest
krb5-devel-1.6.1-78.el5.x86_64.rpme0930d228052ec141f1264766b1fa6a2a03cd3f77ed4b0edb128d41511b88d8bELSA-2014-1255ol5_u11_x86_64_base
krb5-devel-1.6.1-78.el5.x86_64.rpme0930d228052ec141f1264766b1fa6a2a03cd3f77ed4b0edb128d41511b88d8bELSA-2014-1255ol5_x86_64_latest
krb5-libs-1.6.1-78.el5.i386.rpm596bb94f44fa439e8657b7598dcc643887208920a8ec0d955db34fd2b48d0cccELSA-2014-1255ol5_u11_x86_64_base
krb5-libs-1.6.1-78.el5.i386.rpm596bb94f44fa439e8657b7598dcc643887208920a8ec0d955db34fd2b48d0cccELSA-2014-1255ol5_x86_64_latest
krb5-libs-1.6.1-78.el5.x86_64.rpm9926a3b7d7b85738da141a2c063bc2a472808520771f787a9490c00f40e54b0cELSA-2014-1255ol5_u11_x86_64_base
krb5-libs-1.6.1-78.el5.x86_64.rpm9926a3b7d7b85738da141a2c063bc2a472808520771f787a9490c00f40e54b0cELSA-2014-1255ol5_x86_64_latest
krb5-server-1.6.1-78.el5.x86_64.rpmd65310248f4eecd2b8e46928ce2b3a49b087a0d27bcd723639c9cc943da95e1dELSA-2014-1255ol5_u11_x86_64_base
krb5-server-1.6.1-78.el5.x86_64.rpmd65310248f4eecd2b8e46928ce2b3a49b087a0d27bcd723639c9cc943da95e1dELSA-2014-1255ol5_x86_64_latest
krb5-server-ldap-1.6.1-78.el5.x86_64.rpm360661d8d1beff96c5d7687e9a90e13825312b345cdb3ba98054ee129a865f79ELSA-2014-1255ol5_u11_x86_64_base
krb5-server-ldap-1.6.1-78.el5.x86_64.rpm360661d8d1beff96c5d7687e9a90e13825312b345cdb3ba98054ee129a865f79ELSA-2014-1255ol5_x86_64_latest
krb5-workstation-1.6.1-78.el5.x86_64.rpmf40b8daf350d710d4cb7780df20863e86e42f1f556ce46f2b7c33c322f318ac4ELSA-2014-1255ol5_u11_x86_64_base
krb5-workstation-1.6.1-78.el5.x86_64.rpmf40b8daf350d710d4cb7780df20863e86e42f1f556ce46f2b7c33c322f318ac4ELSA-2014-1255ol5_x86_64_latest



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete