-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Sun, 23 Feb 2025 17:42:24 +0000 Source: krb5 Binary: krb5-admin-server krb5-admin-server-dbgsym krb5-gss-samples krb5-gss-samples-dbgsym krb5-k5tls krb5-k5tls-dbgsym krb5-kdc krb5-kdc-dbgsym krb5-kdc-ldap krb5-kdc-ldap-dbgsym krb5-kpropd krb5-kpropd-dbgsym krb5-multidev krb5-otp krb5-otp-dbgsym krb5-pkinit krb5-pkinit-dbgsym krb5-user krb5-user-dbgsym libgssapi-krb5-2 libgssrpc4 libk5crypto3 libkadm5clnt-mit12 libkadm5srv-mit12 libkdb5-10 libkrad-dev libkrad0 libkrb5-3 libkrb5-dbg libkrb5-dev libkrb5support0 Architecture: amd64 Version: 1.20.1-2+deb12u3 Distribution: bookworm Urgency: medium Maintainer: amd64 / i386 Build Daemon (x86-ubc-01) Changed-By: Bastien Roucariès Description: krb5-admin-server - MIT Kerberos master server (kadmind) krb5-gss-samples - MIT Kerberos GSS Sample applications krb5-k5tls - TLS plugin for MIT Kerberos krb5-kdc - MIT Kerberos key server (KDC) krb5-kdc-ldap - MIT Kerberos key server (KDC) LDAP plugin krb5-kpropd - MIT Kerberos key server (Slave KDC Support) krb5-multidev - development files for MIT Kerberos without Heimdal conflict krb5-otp - OTP plugin for MIT Kerberos krb5-pkinit - PKINIT plugin for MIT Kerberos krb5-user - basic programs to authenticate using MIT Kerberos libgssapi-krb5-2 - MIT Kerberos runtime libraries - krb5 GSS-API Mechanism libgssrpc4 - MIT Kerberos runtime libraries - GSS enabled ONCRPC libk5crypto3 - MIT Kerberos runtime libraries - Crypto Library libkadm5clnt-mit12 - MIT Kerberos runtime libraries - Administration Clients libkadm5srv-mit12 - MIT Kerberos runtime libraries - KDC and Admin Server libkdb5-10 - MIT Kerberos runtime libraries - Kerberos database libkrad-dev - MIT Kerberos RADIUS Library Development libkrad0 - MIT Kerberos runtime libraries - RADIUS library libkrb5-3 - MIT Kerberos runtime libraries libkrb5-dbg - debugging files for MIT Kerberos libkrb5-dev - headers and development libraries for MIT Kerberos libkrb5support0 - MIT Kerberos runtime libraries - Support library Closes: 1064965 1094730 Changes: krb5 (1.20.1-2+deb12u3) bookworm; urgency=medium . * Non Maintainer upload by LTS team * Fixes CVE-2024-26462 (Closes: #1064965) A memory leak vulnerability was found in /krb5/src/kdc/ndr.c. * Fixes CVE-2025-24528 (Closes: #1094730) Prevent overflow when calculating ulog block size * Add Salsa CI Checksums-Sha1: 9dc66bc86415b76cf1dc285e7a9c47a139b49c7d 212744 krb5-admin-server-dbgsym_1.20.1-2+deb12u3_amd64.deb 8d70ed657e1a5b2011dd70e604d85c133e64962b 93752 krb5-admin-server_1.20.1-2+deb12u3_amd64.deb f02b78ae6dc5243c558aa670c5012745e4ec5068 39496 krb5-gss-samples-dbgsym_1.20.1-2+deb12u3_amd64.deb d75ab464c9df46644aafa31f8d772298e07359b2 28452 krb5-gss-samples_1.20.1-2+deb12u3_amd64.deb 48fcd311171567e3141b49c8f85fd5c8576aa384 19712 krb5-k5tls-dbgsym_1.20.1-2+deb12u3_amd64.deb 94a06f37bbf7b3546d1e8548d69e8f39866bc936 19156 krb5-k5tls_1.20.1-2+deb12u3_amd64.deb ba3f14ccfa22ed20c7f0b10d318b385c0fd13efa 456784 krb5-kdc-dbgsym_1.20.1-2+deb12u3_amd64.deb a63d902a1f16b4ebd2e141e8509dc13201ac7de3 192856 krb5-kdc-ldap-dbgsym_1.20.1-2+deb12u3_amd64.deb f1302adaa437c32c78054e7b39fb350258398977 87672 krb5-kdc-ldap_1.20.1-2+deb12u3_amd64.deb 13ffbe3b1fbb7b2732214f1b95684e453025cd79 180700 krb5-kdc_1.20.1-2+deb12u3_amd64.deb 09a8349fb225918a86703610d06135b6dd72f602 43460 krb5-kpropd-dbgsym_1.20.1-2+deb12u3_amd64.deb f5d0c54c41ceedadb608ff9966a6a11823ebc439 31460 krb5-kpropd_1.20.1-2+deb12u3_amd64.deb 3759380c7e1669beb733a3663ca3d56c3cb24e5d 125200 krb5-multidev_1.20.1-2+deb12u3_amd64.deb a44526e006c8af554cd499ec0b7cc4f37004baba 29260 krb5-otp-dbgsym_1.20.1-2+deb12u3_amd64.deb e4226b2a5dfb414261c83efcf78dc2159fad55ce 21716 krb5-otp_1.20.1-2+deb12u3_amd64.deb 9b9adc1f47d237a3f19dc079b9fcb95103442878 156488 krb5-pkinit-dbgsym_1.20.1-2+deb12u3_amd64.deb db5ff7810dbe89a6dea20ca9b83c3f207cd1d5f1 57444 krb5-pkinit_1.20.1-2+deb12u3_amd64.deb 7325a652dae759ec17189e49037d3d6139e9944f 201688 krb5-user-dbgsym_1.20.1-2+deb12u3_amd64.deb 9174766b50f1a5b1dd94ab85077ec7108faca7ec 118648 krb5-user_1.20.1-2+deb12u3_amd64.deb b9f5f96e3e69d5e009e8bed61a1824cc0ad8f619 15864 krb5_1.20.1-2+deb12u3_amd64-buildd.buildinfo fe42c093ce214cb6cb86d41a33959019800f4f75 134696 libgssapi-krb5-2_1.20.1-2+deb12u3_amd64.deb 85e27d3fad3c880fc9b7bb88530143df75edff52 58144 libgssrpc4_1.20.1-2+deb12u3_amd64.deb 902a8b0c6961cbaca51c77a047f4a1dd742b4912 78924 libk5crypto3_1.20.1-2+deb12u3_amd64.deb 2f5fd17085ff5fd2b77f6c93d924def6b1d20969 41300 libkadm5clnt-mit12_1.20.1-2+deb12u3_amd64.deb 03cb298585f0a6044b2e5b7701e2ee5b316324d3 53100 libkadm5srv-mit12_1.20.1-2+deb12u3_amd64.deb d6a97c7113790024e9084cafe08eab876703b4d4 40876 libkdb5-10_1.20.1-2+deb12u3_amd64.deb c00896d47bc925d7b4c07cca53781c58c83bb50b 15484 libkrad-dev_1.20.1-2+deb12u3_amd64.deb 9f9d1bd9a980ed2b9140657a5d3015a51efd9c98 24428 libkrad0_1.20.1-2+deb12u3_amd64.deb c12b8d9d9c41731cf13a9a29cc77714c245ae53a 331872 libkrb5-3_1.20.1-2+deb12u3_amd64.deb 91d43c783402a435ae86fa45dd6b3f9904ef045b 2181720 libkrb5-dbg_1.20.1-2+deb12u3_amd64.deb 6548e4a6d1603e6ae30f5f46dabae94e73b5c6d9 15008 libkrb5-dev_1.20.1-2+deb12u3_amd64.deb 8da1642fc1d8300ad7bdc499c60ce7854e650ee1 32800 libkrb5support0_1.20.1-2+deb12u3_amd64.deb Checksums-Sha256: 798d5e909b060014db4bfe9cef13a465aa2354a74cce8ff58345d7376c8762d2 212744 krb5-admin-server-dbgsym_1.20.1-2+deb12u3_amd64.deb 14338d04378553259b04e60880144a187a036e46cf3d561a7bc520ee3f3b8914 93752 krb5-admin-server_1.20.1-2+deb12u3_amd64.deb 61e606e995e1b657f96cd9690a1b9327cee4f826f382ffe0684f3dff92b5dbc8 39496 krb5-gss-samples-dbgsym_1.20.1-2+deb12u3_amd64.deb 3bea2705f4947a67f8090ac2836276aa53e0bf75b8c8df2805448b9c520f7713 28452 krb5-gss-samples_1.20.1-2+deb12u3_amd64.deb 9d6cf95f00126d70ddd643bcfada54c65a4e44b31145ec6b79adda74f2649f84 19712 krb5-k5tls-dbgsym_1.20.1-2+deb12u3_amd64.deb 1f6135c719fc7e5ae47fedc01aa8b4ea889b2e788c9c3fa9b9b8732016152dc8 19156 krb5-k5tls_1.20.1-2+deb12u3_amd64.deb f80af1a903d185674d024531055a33b26354ca6a0427eb843ab26952918c6a19 456784 krb5-kdc-dbgsym_1.20.1-2+deb12u3_amd64.deb 15c9b44bbe415a3a17b2e3bb994cf5a5abfe4a05f5ec1cfd7cbc74d7eb77ea7f 192856 krb5-kdc-ldap-dbgsym_1.20.1-2+deb12u3_amd64.deb 35fa7bf3e3401f9aba9f69c31ae1b897a381fd6d2a6ab36588cc4ff8e4006995 87672 krb5-kdc-ldap_1.20.1-2+deb12u3_amd64.deb 454f2ef2c47ce7afa274af3c7e04647910eb5b94fb5f397540e5b1e99840f1b2 180700 krb5-kdc_1.20.1-2+deb12u3_amd64.deb 5fadbe3baff410d4d64f9784592ae08081ba15e757ac095f22b70c626f711a76 43460 krb5-kpropd-dbgsym_1.20.1-2+deb12u3_amd64.deb 4279af82a84cdf5a283124384ea120346416356765d3ed35e7bbdb2fb58ff332 31460 krb5-kpropd_1.20.1-2+deb12u3_amd64.deb 4901ded0b08002fcffbe0db31e5e7bad2c90b64ef51ff3c0e41d29dede599198 125200 krb5-multidev_1.20.1-2+deb12u3_amd64.deb b60c2818a4e3fc033795d64b2c808a63b5cd366ee6bfae3e2eb45e9bbeeca02c 29260 krb5-otp-dbgsym_1.20.1-2+deb12u3_amd64.deb c518d367be31f90ee7987ee5f3755714fe0ecf07318e4f9d5df570f124f6c077 21716 krb5-otp_1.20.1-2+deb12u3_amd64.deb af0a2ea028ac2b5485c5197305c293c39fda0821c64cca0c22883f0fae863a63 156488 krb5-pkinit-dbgsym_1.20.1-2+deb12u3_amd64.deb dc33dccad986eade59d87145050b822a48d6943e4f6b3832d914bd04bae82ce4 57444 krb5-pkinit_1.20.1-2+deb12u3_amd64.deb 308a72b134c2a8e74e1e434dfd5f5394f815e6ceab54bbc63ae7f2f4465137a0 201688 krb5-user-dbgsym_1.20.1-2+deb12u3_amd64.deb 714ed966d9b4dcf5582c6bb49aea663791eb4aeaf583647ae0279ef856f310fb 118648 krb5-user_1.20.1-2+deb12u3_amd64.deb 9c8d5322fee0f2b7b38da4d8b3bcbdcf5eeea9277ed75c00fd8c389978e12dee 15864 krb5_1.20.1-2+deb12u3_amd64-buildd.buildinfo 34a3fcd0e5aeeb01e895b8ce563b06b12b0d763f1b5943b97feffed07a3f56f1 134696 libgssapi-krb5-2_1.20.1-2+deb12u3_amd64.deb d5ca7604507c6fc7168e54f92ace9da7f062ef38981bb4d6bcf74f62cd406254 58144 libgssrpc4_1.20.1-2+deb12u3_amd64.deb 6aff44ea189ad062eb7a83b9fac99861f1efa35bf66bc7605c2ade644a08bb94 78924 libk5crypto3_1.20.1-2+deb12u3_amd64.deb a732734d32581186adf95d4edf6430baf75c88a16315564d208757501adc1c8a 41300 libkadm5clnt-mit12_1.20.1-2+deb12u3_amd64.deb d18dfcbd384a7b1b2cdfeb5810899db41db560a18e9725bc50e5c752c4be5de3 53100 libkadm5srv-mit12_1.20.1-2+deb12u3_amd64.deb 3ff0c3f4eb1ef86827e335e1f5fdbb4193ad0e39cacad7349b65c581bb9911bf 40876 libkdb5-10_1.20.1-2+deb12u3_amd64.deb 222845bef1b33867929e0830432cff692a2b71a7383c990f0cf6ed5895bc541e 15484 libkrad-dev_1.20.1-2+deb12u3_amd64.deb 1f97b3bbbb514777107903f8f955191b1e06622e8bdc71053122eeacd44b7961 24428 libkrad0_1.20.1-2+deb12u3_amd64.deb e3c228ea202bf5a278329f5a96cbe3ca48927e0ed7fea849680b0996fece4879 331872 libkrb5-3_1.20.1-2+deb12u3_amd64.deb 82e0d5f6e4dff7ee23ace8c725b131670ed9f34786cab044bda8b938c3df4c31 2181720 libkrb5-dbg_1.20.1-2+deb12u3_amd64.deb cfb8ff018d4e29a49d67b6963497372c1dd80c4b4b90a7b8774ed2251ad3e45a 15008 libkrb5-dev_1.20.1-2+deb12u3_amd64.deb 8862ae9677f2361d888fcefb2734e4ddfb2678f82535d21c4c0cc77d8e406e9f 32800 libkrb5support0_1.20.1-2+deb12u3_amd64.deb Files: 19f184bb4c724d6647877c8a48005ea8 212744 debug optional krb5-admin-server-dbgsym_1.20.1-2+deb12u3_amd64.deb cc88e3b7046d1a414dd22efb07911335 93752 net optional krb5-admin-server_1.20.1-2+deb12u3_amd64.deb 0038891c563b5379aea8c744e01ae686 39496 debug optional krb5-gss-samples-dbgsym_1.20.1-2+deb12u3_amd64.deb 36e43a6955e87884bb77cc0420ddc027 28452 net optional krb5-gss-samples_1.20.1-2+deb12u3_amd64.deb 04ebae63d6322a1a100c4a3527e859c3 19712 debug optional krb5-k5tls-dbgsym_1.20.1-2+deb12u3_amd64.deb 8d2bcef6ee41ba63eb72c40e1444a101 19156 net optional krb5-k5tls_1.20.1-2+deb12u3_amd64.deb 7cb67fee826e1294da4ec949ba26f3d2 456784 debug optional krb5-kdc-dbgsym_1.20.1-2+deb12u3_amd64.deb 9bedc29acad39ae82cb7cfcf02cedc72 192856 debug optional krb5-kdc-ldap-dbgsym_1.20.1-2+deb12u3_amd64.deb c90b8b0e9968a52b2f5899f32808efa8 87672 net optional krb5-kdc-ldap_1.20.1-2+deb12u3_amd64.deb e45f2c94b9a3eac46504c0a7d67d8d10 180700 net optional krb5-kdc_1.20.1-2+deb12u3_amd64.deb c1e854db551c395652e3d4536b90593c 43460 debug optional krb5-kpropd-dbgsym_1.20.1-2+deb12u3_amd64.deb 66667945595cc5ff3492a08bb47c3ebf 31460 net optional krb5-kpropd_1.20.1-2+deb12u3_amd64.deb 801afd2478587b02a7f3171577d1786d 125200 libdevel optional krb5-multidev_1.20.1-2+deb12u3_amd64.deb 1e227cf3ba022acb6c49b7df511e1ca4 29260 debug optional krb5-otp-dbgsym_1.20.1-2+deb12u3_amd64.deb e0a2b780324d11264cdcf11b5caa092a 21716 net optional krb5-otp_1.20.1-2+deb12u3_amd64.deb efa40c350d4f073b53b4fa2dfc980b2e 156488 debug optional krb5-pkinit-dbgsym_1.20.1-2+deb12u3_amd64.deb 9d52662d06f90df9328e58d7a896c4b9 57444 net optional krb5-pkinit_1.20.1-2+deb12u3_amd64.deb 7a277bc48db3b341557682c053eb1221 201688 debug optional krb5-user-dbgsym_1.20.1-2+deb12u3_amd64.deb 368dbd0393dc07addc7aa219e1f79d1a 118648 net optional krb5-user_1.20.1-2+deb12u3_amd64.deb b4b10c3d8bb0a6e84cc4f34a48388d76 15864 net optional krb5_1.20.1-2+deb12u3_amd64-buildd.buildinfo 0575039388b6760fae466553d73056ed 134696 libs optional libgssapi-krb5-2_1.20.1-2+deb12u3_amd64.deb 5a380e64b220b123ea0e02f313aa4510 58144 libs optional libgssrpc4_1.20.1-2+deb12u3_amd64.deb af85db82658541d6354956cbee799eee 78924 libs optional libk5crypto3_1.20.1-2+deb12u3_amd64.deb cb5e7983b69921d2671af75466263870 41300 libs optional libkadm5clnt-mit12_1.20.1-2+deb12u3_amd64.deb ce6772fdecc7702a6c1f2ec414bd5ed2 53100 libs optional libkadm5srv-mit12_1.20.1-2+deb12u3_amd64.deb 41696493be23fb0002584959202ebbf5 40876 libs optional libkdb5-10_1.20.1-2+deb12u3_amd64.deb 21638d8961561ea3f086446634c5c440 15484 libdevel optional libkrad-dev_1.20.1-2+deb12u3_amd64.deb 408bd441c532ae2749fcd27cb4604559 24428 libs optional libkrad0_1.20.1-2+deb12u3_amd64.deb 684f8b91237556e23b8b6aae49f37117 331872 libs optional libkrb5-3_1.20.1-2+deb12u3_amd64.deb 91c5a9b1c3c10134349c81968a8ff91a 2181720 debug optional libkrb5-dbg_1.20.1-2+deb12u3_amd64.deb 5e84d47385bdd15235234a3892304580 15008 libdevel optional libkrb5-dev_1.20.1-2+deb12u3_amd64.deb c71ef71a92756b09178384434c1d92f5 32800 libs optional libkrb5support0_1.20.1-2+deb12u3_amd64.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEnw0rdzqckKx6dwRTEbCLukZn24oFAmf9c+wACgkQEbCLukZn 24ofIBAAljJxysGu37jA0VLc4cbRaHSsM75Qf8sirgbahgwI1Y/7flayF/wMoVNW zhpbt4tdndjRvY6iT2I/xpq2Wlx/j1OiRWe6oXr1+FBHNas80mrEGafpMyij0lNd xY0kHDHeIXLaekTpQT9wHu/CMN5uweDSsIi5VCJqDZzxDkbwro3UEFa82aHmBeh1 BMR8D+FUphHx/mbNaCyDEra50fF/lZvfuvsmqpdJ+HpTCPoe8xCzSF+1X//lqfqm SxUqAt/dCiv5InkGhzc1ieabp8Fa0ZjihICWcvwkM1s4gHMwca694QM8urCmw+n9 tZU/DPpT2XpoKWbGunmqcegv6ElTXhdgnVYt9hKZE3rn8zJZk/p1/8f492rVVyx0 wySjnYW8ihy//SAIqqDf04ZYjkTyINCTTo6I7fQTUeib0r+0SZ8vAm71p1Dy/q2H 7927upMJHiswv/4UlCSwnDrtPx5CA2MonhkhXzr1rEl8+uHNeLqy3SnJQ8rri+lA XNVxRyDdtP0+LmKtZDvO8h5L2nQVCcAECcVpDdSniUC4S1YPDe9bRmJ+COPyhzCq UOYODt5neMSPSsWoZl9t7hCmokxIxq4UtygGGMHA+6frKt5pYkS7b3lf1Fbbt5z9 OwYqJJACa3hVqfdezccrVritxROWsnpU3nO84+eRWeQhga7BTAk= =igMn -----END PGP SIGNATURE-----