Fedora 8 Update: krb5-1.6.2-11.fc8

updates at fedoraproject.org updates at fedoraproject.org
Wed Feb 13 05:06:48 UTC 2008


--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2007-4209
2008-02-13 04:19:14
--------------------------------------------------------------------------------

Name        : krb5
Product     : Fedora 8
Version     : 1.6.2
Release     : 11.fc8
URL         : http://web.mit.edu/kerberos/www/
Summary     : The Kerberos network authentication system.
Description :
Kerberos V5 is a trusted-third-party network authentication system,
which can improve your network's security by eliminating the insecure
practice of cleartext passwords.

--------------------------------------------------------------------------------
Update Information:

This update fixes a couple of bugs which could cause credential delegation to
appear to fail when it hadn't, and which made it difficult to use delegated
Kerberos credentials when SPNEGO was used, and adds the pam_loginuid and
pam_selinux modules to the PAM configuration files used by Kerberos-aware rsh
and ftpd.
--------------------------------------------------------------------------------
ChangeLog:

* Fri Nov 16 2007 Nalin Dahyabhai <nalin at redhat.com> 1.6.2-11
- backport a fix to make handling of returned flags during spnego credential
  delegation more forgiving of apps which don't care about flags but still
  want a delegated credential handle (#314651, RT#5802)
- fix retrieval of krb5 credentials from an spnego delegated handle (#319351,
  RT#5807)
* Wed Oct 17 2007 Nalin Dahyabhai <nalin at redhat.com> 1.6.2-10
- make proper use of pam_loginuid and pam_selinux in rshd and ftpd
* Fri Oct 12 2007 Nalin Dahyabhai <nalin at redhat.com>
- make krb5.conf %verify(not md5 size mtime) in addition to
  %config(noreplace), like /etc/nsswitch.conf (#329811)
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #319351 - gss_krb5_copy_ccache can't find delegated Kerberos creds when using SPNEGO
        https://bugzilla.redhat.com/show_bug.cgi?id=319351
  [ 2 ] Bug #314651 - gss_init_sec_context() mechglue wrapper doesn't handle ret_flags right
        https://bugzilla.redhat.com/show_bug.cgi?id=314651
--------------------------------------------------------------------------------

This update can be installed with the "yum" update program.  Use 
su -c 'yum update krb5' at the command line.
For more information, refer to "Managing Software with yum",
available at http://docs.fedoraproject.org/yum/.

All packages are signed with the Fedora Project GPG key.  More details on the
GPG keys used by the Fedora Project can be found at
http://fedoraproject.org/keys
--------------------------------------------------------------------------------




More information about the Fedora-package-announce mailing list