ELSA-2018-0666

ELSA-2018-0666 - krb5 security, bug fix, and enhancement update

Type:SECURITY
Severity:MODERATE
Release Date:2018-04-16

Description


[1.15.1-18]
- Expose context errors in pkinit_server_plugin_init
- Resolves: #1460089

[1.15.1-17]
- Drop certauth test changes that prevented runnig it
- Resolves: #1498767

[1.15.1-16]
- Drop irrelevant DIR trigger logic
- Resolves: #1431198

[1.15.1-15]
- Fix CVE-2017-7562 (certauth eku bypass)
- Resolves: #1498767

[1.15.1-14]
- Fix CVE-2017-11368 (s4u2 request assertion failures)
- Resolves: #1498768

[1.15.1-13]
- Force-add /etc/krb5.conf.d so we can guarantee it exists
- Resolves: #1431198

[1.15.1-12]
- Add krb5 policy plugin interface
- Remove soname downgrade
- Resolves: #1462982

[1.15.1-11]
- Make t_certauth.py runnable
- Resolves: #1443388

[1.15.1-10]
- Add context SSF query support
- Resolves: #1472956

[1.15.1-9]
- Remove incomplete PKINIT OCSP support
- Resolves: #1460089


Related CVEs


CVE-2017-7562
CVE-2017-11368

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 7 (aarch64) krb5-1.15.1-18.el7.src.rpm740244f5b632d273c8c2bec9e9ff136cELBA-2020-3982
krb5-devel-1.15.1-18.el7.aarch64.rpm2f483fb39287feb9ffb2631c5fcb605cELBA-2020-3982
krb5-libs-1.15.1-18.el7.aarch64.rpm9a976579f4e75937da569214c7945982ELBA-2020-3982
krb5-pkinit-1.15.1-18.el7.aarch64.rpm2315ea91c894cfd1f1458af9d90108f1ELBA-2020-3982
krb5-server-1.15.1-18.el7.aarch64.rpma4995dc7f1239eb7b01a9e25876271a9ELBA-2020-3982
krb5-server-ldap-1.15.1-18.el7.aarch64.rpmd73c192fc78edbce47de05504526ad29ELBA-2020-3982
krb5-workstation-1.15.1-18.el7.aarch64.rpmf75ce119ca0c6b9f57842cfcbb2c224fELBA-2020-3982
libkadm5-1.15.1-18.el7.aarch64.rpma2cd8b43d9bf8f02a4ed85ab6de0ea8eELBA-2020-3982
Oracle Linux 7 (x86_64) krb5-1.15.1-18.el7.src.rpm740244f5b632d273c8c2bec9e9ff136cELBA-2020-3982
krb5-devel-1.15.1-18.el7.i686.rpm749d94c731acecf5b7c8a3638216b301ELBA-2020-3982
krb5-devel-1.15.1-18.el7.x86_64.rpm6430a63c2c99e54b3ceae1c34459615bELBA-2020-3982
krb5-libs-1.15.1-18.el7.i686.rpmd918345e0695972ae9935c314d2a2fe2ELBA-2020-3982
krb5-libs-1.15.1-18.el7.x86_64.rpmcbc3c3c56a166984337f0171be8e779aELBA-2020-3982
krb5-pkinit-1.15.1-18.el7.x86_64.rpm55878dc74783c7fb1ddc21b0db505b71ELBA-2020-3982
krb5-server-1.15.1-18.el7.x86_64.rpmfcdca234e05460c4f9cef2acc370f0bcELBA-2020-3982
krb5-server-ldap-1.15.1-18.el7.x86_64.rpm54d1c9b56e98e6d9e81eeffcbe44a46cELBA-2020-3982
krb5-workstation-1.15.1-18.el7.x86_64.rpm5ed3e3cea080d507fc73fbc155a5b942ELBA-2020-3982
libkadm5-1.15.1-18.el7.i686.rpme12174edf88b0c25fb6248ed974dcc9eELBA-2020-3982
libkadm5-1.15.1-18.el7.x86_64.rpme738e21b1ad5c781296e2167a9e39aa5ELBA-2020-3982



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete