[El-errata] ELSA-2010-0029 Critical: Enterprise Linux 3 krb5 security update

Errata Announcements for Enterprise Linux el-errata at oss.oracle.com
Tue Jan 12 19:47:42 PST 2010


Enterprise Linux Security Advisory ELSA-2010-0029

https://rhn.redhat.com/errata/RHSA-2010-0029.html

The following updated rpms for Enterprise Linux 3 have been uploaded to 
the Unbreakable Linux Network:

i386:
krb5-devel-1.2.7-71.i386.rpm
krb5-libs-1.2.7-71.i386.rpm
krb5-server-1.2.7-71.i386.rpm
krb5-workstation-1.2.7-71.i386.rpm

x86_64:
krb5-devel-1.2.7-71.x86_64.rpm
krb5-libs-1.2.7-71.i386.rpm
krb5-libs-1.2.7-71.x86_64.rpm
krb5-server-1.2.7-71.x86_64.rpm
krb5-workstation-1.2.7-71.x86_64.rpm


SRPMS:
http://oss.oracle.com/el3/SRPMS-updates/krb5-1.2.7-71.src.rpm


Description of changes:

[1.2.7-71]
- add candidate patch to correct KDC integer overflows which could be
  triggered in the backported RC4 support by malformed RC4 ciphertext
  (CVE-2009-4212, #546344)





More information about the El-errata mailing list