Cy Schubert
2dcaa3f892
Update 1.11 --> 1.11.1.
...
Security: Fix a null pointer dereference in the KDC PKINIT code [CVE-2013-1415].
2013-02-22 20:03:17 +00:00
Cy Schubert
734550f60d
Update 1.10.3 --> 1.11
2013-01-22 04:03:17 +00:00
Cy Schubert
132c8dd868
Update krb5 1.9.2 --> 1.10.3
...
Feature safe: yes
2012-11-03 18:59:37 +00:00
Cy Schubert
9544f5eff2
Apply patch for MITKRB5-SA-2011-007, KDC null pointer dereference in TGS
...
handling.
PR: 163272
Submitted by: zi
Security: 6c7d9a35-2608-11e1-89b4-001ec9578670
Feature safe: yes
2011-12-14 04:31:21 +00:00
Cy Schubert
a564f94724
Update 1.9.1 --> 1.9.2. This is a bugfix release.
...
Feature safe: yes
2011-11-16 20:38:49 +00:00
Cy Schubert
fe6aa8f527
Update 1.9 --> 1.9.1.
...
PR: 158520
Submitted by: Ryan Steinmetz <rpsfa@rit.edu>
2011-06-30 04:03:11 +00:00
Cy Schubert
a4eccde1aa
Apply patch for MITKRB5-SA-2011-004, kadmind invalid pointer free()
...
[CVE-2011-0285]
Security: MITKRB5-SA-2011-004, CVE-2011-0285
Feature safe: yes
2011-04-14 00:39:25 +00:00
Cy Schubert
3ed59e1a47
Apply patch for MITKRB5-SA-2011-003, KDC vulnerable to double-free when
...
PKINIT enabled.
Obtained from: http://web.mit.edu/kerberos/advisories/MITKRB5-SA-2011-003.txt
Security: MITKRB5-SA-2011-003, CVE-2011-0284
Feature safe: yes
2011-03-25 00:19:02 +00:00
Cy Schubert
2d5c97dc53
Apply fixes for kpropd denial of service (MITKRB5-SA-2011-001) and KDC
...
denial of service (MITKRB5-SA-2011-002).
Security: MITKRB5-SA-2011-001 (CVE-2010-4022),
MITKRB5-SA-2011-002 (CVE-2011-0281)
2011-02-11 01:04:09 +00:00
Cy Schubert
4108064a78
Update from 1.8.3_2 to 1.9.
2010-12-23 01:04:41 +00:00
Cy Schubert
13b6797ec5
Fix security vulnerabilities CVE-2010-1324, CVE-2010-1323, CVE-2010-4020,
...
CVE-2010-4021, and CVE-2010-1322.
PR: 152755
Submitted by: wollman
Security: CVE-2010-1324, CVE-2010-1323, CVE-2010-4020, CVE-2010-4021,
and CVE-2010-1322.
Feature safe: Yes
2010-12-02 02:09:23 +00:00
Cy Schubert
d17854089e
Update to 1.8.3.
...
PR: 149299
Submitted by: gwollman
2010-08-05 22:37:11 +00:00
Cy Schubert
524a2efde7
Apply patch for MIT KRB5 security vulnerability MITKRB5-SA-2010-005.
...
PR: 146939
Submitted by: wollman
Security: MIT krb5 Security Advisory 2010-005
2010-05-25 05:14:15 +00:00
Cy Schubert
1a0ed7c73e
Welcome the new krb5-1.8.1. Significant changes include the removal of
...
the MIT KRB5 applications (now in a separate tarball and port).
2010-04-26 03:48:43 +00:00
Cy Schubert
3c82bcd5d8
MFkrb5-17.
2010-04-26 03:23:08 +00:00
Cy Schubert
14ff4ec24c
Fixes for multiple vulnerabilities.
...
Security: US-CERT Technical Cyber Security Alert TA08-079B --
MIT Kerberos Updates for Multiple Vulnerabilities
US-CERT Vulnerability Note VU#895609,
US-CERT Vulnerability Note VU#374121
MIT krb5 Security Advisory 2008-001
MIT krb5 Security Advisory 2008-002
2008-03-19 19:26:53 +00:00
Cy Schubert
3d878157d5
Update 1.6.2 --> 1.6.3
...
Security: fix CVE-2007-3999, CVE-2007-4743 svc_auth_gss.c buffer overflow
fix CVE-2007-4000 modify_policy vulnerability
Also: add PKINIT support
2007-10-23 03:41:37 +00:00
Cy Schubert
9c73679b41
Patch for MIT krb5 Security Advisory 2007-006 - kadmind RPC lib buffer
...
overflow, uninitialized pointer
Security: MIT krb5 Security Advisory 2007-006
2007-09-11 23:52:19 +00:00
Cy Schubert
36f5a2384a
Update 1.6.1 --> 1.6.2
2007-07-11 16:51:31 +00:00
Cy Schubert
b6d944b8d8
Patches for:
...
MITKRB5-SA-2007-004: kadmind affected by multiple RPC library vulnerabilities
MITKRB5-SA-2007-005: kadmind vulnerable to buffer overflow
Security: US CERT Technical Cyber Security Alert TA07-177A --
MIT Kerberos Vulnerabilities
2007-06-26 23:01:44 +00:00
Cy Schubert
9abfecf5f8
Update from 1.6 to 1.6.1.
2007-04-23 22:10:09 +00:00
Cy Schubert
99854179ca
Update 1.5.1 --> 1.6
...
Security: MITKRB5-SA-2006-002, MITKRB5-SA-2006-003, and
US-CERT Technical Cyber Security Alert TA07-009B
2007-01-10 05:06:45 +00:00
Cy Schubert
f647e41ca2
Update krb5-1.5 --> krb5-1.5.1
...
Submitted by: Paul Vixie <paul@vix.com>
2006-09-17 00:48:42 +00:00
Cy Schubert
1a977f5454
Update 1.4.3 --> 1.5
2006-07-14 18:37:11 +00:00
Edwin Groothuis
32487a10ad
SHA256ify
...
Approved by: krion@
2006-01-24 01:06:45 +00:00
Cy Schubert
1b6e0f60c7
Update 1.4.2 --> 1.4.3
2005-11-18 00:38:05 +00:00
Cy Schubert
7d38b507de
Update 1.4.1 --> 1.4.2
2005-10-04 22:09:08 +00:00
Cy Schubert
3e28cf1baa
Update 1.4 --> 1.4.1.
...
Package list fixup when KRB5_KRB4_COMPAT is not specified.
2005-04-23 01:49:07 +00:00
Cy Schubert
8c83b52bad
Update 1.3.6 --> 1.4
2005-04-13 03:05:17 +00:00
Cy Schubert
07c2342b6f
Update 1.3.5 --> 1.3.6
2004-12-21 01:38:02 +00:00
Cy Schubert
b0bcbaf20b
Crypto-publish.org no longer maintains a current release of MIT-KRB5.
...
Remove code to alternatively fetch from that site.
2004-12-21 00:24:18 +00:00
Cy Schubert
cba050d77c
Update 1.3.4 --> 1.3.5
2004-10-20 20:20:06 +00:00
Cy Schubert
80b9496636
Update KRB5 1.3.3 --> 1.3.4
2004-06-11 23:08:57 +00:00
Cy Schubert
81ee312c5d
Update 1.3.2 --> 1.3.3
2004-04-07 00:28:04 +00:00
Cy Schubert
3d675ef92a
- Update MIT KRB5 1.3.1 --> 1.3.2. (As crypto-publish.org does not have
...
1.3.2 yet, when USE_KRB5_TARBALL=CRYPTO-PUBLISH is specified, 1.3.1
will be installed.)
- Add SIZE to distinfo
2004-02-28 21:25:21 +00:00
Cy Schubert
974a6f062a
Update 1.3 --> 1.3.1
2003-08-08 23:35:18 +00:00
Cy Schubert
dc590a57d4
Update 1.2.8 --> 1.3
2003-08-08 01:20:18 +00:00
Cy Schubert
b19f46658c
Update 1.2.7 --> 1.2.8.
2003-05-07 03:47:49 +00:00
Cy Schubert
e781a319dc
Update 1.2.6 --> 1.2.7
...
Note: Since crypto-publish.org does not yet have krb5-1.2.7 up on their
website, fetch from their site has been temporarily disabled.
2002-11-16 00:02:13 +00:00
Cy Schubert
456c93a6b2
Crypto-publish.org has finally put krb5-1.2.6 up on their site. The
...
patch reimplements code to fetch MIT Kerberos from their site when
USA_RESIDENT=NO.
Approved by: kris
2002-09-25 17:50:00 +00:00
Cy Schubert
495424cc3f
Update 1.2.5 --> 1.2.6
...
Note: Since crypto-publish.org does not yet have krb5-1.2.6 up on their
website, fetch from their site has been temporarily disabled.
2002-09-13 13:46:48 +00:00
Cy Schubert
d845a8a153
Now that www.crypto-publish.org has put the latest version of MIT KRB5
...
up on their website again, reimplementation of the Makefile patch that
fetched the the tarball from their site for users outside of the US
(originally in Makefile rev 1.29). USA_RESIDENT=YES still supports
manual fetching from web.mit.edu.
2002-05-03 02:20:17 +00:00
Cy Schubert
f377a101ed
Upgrade 1.2.4 --> 1.2.5
2002-05-02 14:30:24 +00:00
Cy Schubert
a50d121378
MIT currently distributes their KRB5 distribution in a tarball (.tar)
...
that contains the distribution itself, in a tar.gz file, and a signature
certificate, contained in a detached .tar.gz.asc file. Prior to this
patch, users installing MIT KRB5 had to extract the tarball into
/usr/ports/distfiles, then proceed with the installation. This caused
confusion among those installing the port. This patch addresses the
problem by extracting the .tar.gz file from the tarball, then unpacking
the .tar.gz file before continuing with the build.
2002-03-18 22:52:43 +00:00
Cy Schubert
4aa8bcaf49
Update 1.2.3 --> 1.2.4
2002-03-01 13:23:47 +00:00
Cy Schubert
c0f94d44f3
Update 1.2.2 -> 1.2.3
2002-01-16 03:17:24 +00:00
Jacques Vidrine
ddfc9c62a8
Update 1.2.1 -> 1.2.2
2001-03-02 17:33:57 +00:00
Jacques Vidrine
db45d66043
Update 1.2 -> 1.2.1. From the announcement:
...
The MIT Kerberos Team announces the availibility of MIT Kerberos 5
Release 1.2.1. This is primarily a bugfix release. Changes include:
* A bug in the gssapi library that prevented kadmin clients from
working has been fixed. For some reason this was not caught during
beta testing.
* login.c now correctly sets the default ccache name.
* A memory leak in conv_princ.c has been fixed.
2000-06-30 17:41:25 +00:00
Jacques Vidrine
071860d8ce
Update 1.1.1 -> 1.2
2000-06-24 01:48:11 +00:00
Jacques Vidrine
001fea0ac5
Update 1.1 -> 1.1.1
2000-01-16 19:10:58 +00:00