-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Mon, 01 Jul 2024 11:31:35 -0600 Source: krb5 Binary: krb5-admin-server krb5-admin-server-dbgsym krb5-gss-samples krb5-gss-samples-dbgsym krb5-k5tls krb5-k5tls-dbgsym krb5-kdc krb5-kdc-dbgsym krb5-kdc-ldap krb5-kdc-ldap-dbgsym krb5-kpropd krb5-kpropd-dbgsym krb5-multidev krb5-otp krb5-otp-dbgsym krb5-pkinit krb5-pkinit-dbgsym krb5-user krb5-user-dbgsym libgssapi-krb5-2 libgssrpc4 libk5crypto3 libkadm5clnt-mit12 libkadm5srv-mit12 libkdb5-10 libkrad-dev libkrad0 libkrb5-3 libkrb5-dbg libkrb5-dev libkrb5support0 Architecture: ppc64el Version: 1.20.1-2+deb12u2 Distribution: bookworm-security Urgency: high Maintainer: ppc64el Build Daemon (ppc64el-osuosl-01) Changed-By: Sam Hartman Description: krb5-admin-server - MIT Kerberos master server (kadmind) krb5-gss-samples - MIT Kerberos GSS Sample applications krb5-k5tls - TLS plugin for MIT Kerberos krb5-kdc - MIT Kerberos key server (KDC) krb5-kdc-ldap - MIT Kerberos key server (KDC) LDAP plugin krb5-kpropd - MIT Kerberos key server (Slave KDC Support) krb5-multidev - development files for MIT Kerberos without Heimdal conflict krb5-otp - OTP plugin for MIT Kerberos krb5-pkinit - PKINIT plugin for MIT Kerberos krb5-user - basic programs to authenticate using MIT Kerberos libgssapi-krb5-2 - MIT Kerberos runtime libraries - krb5 GSS-API Mechanism libgssrpc4 - MIT Kerberos runtime libraries - GSS enabled ONCRPC libk5crypto3 - MIT Kerberos runtime libraries - Crypto Library libkadm5clnt-mit12 - MIT Kerberos runtime libraries - Administration Clients libkadm5srv-mit12 - MIT Kerberos runtime libraries - KDC and Admin Server libkdb5-10 - MIT Kerberos runtime libraries - Kerberos database libkrad-dev - MIT Kerberos RADIUS Library Development libkrad0 - MIT Kerberos runtime libraries - RADIUS library libkrb5-3 - MIT Kerberos runtime libraries libkrb5-dbg - debugging files for MIT Kerberos libkrb5-dev - headers and development libraries for MIT Kerberos libkrb5support0 - MIT Kerberos runtime libraries - Support library Changes: krb5 (1.20.1-2+deb12u2) bookworm-security; urgency=high . * CVE-2024-37370: an unauthenticated attacker can modify the extra count in an RFC 4121 GSS token, causing the token to appear truncated. * CVE-2024-37371: an attacker can cause invalid memory reads by sending an invalid GSS token. Checksums-Sha1: 66cf0c4523f46c30ea78006b6200c2d3dc3a1a83 213000 krb5-admin-server-dbgsym_1.20.1-2+deb12u2_ppc64el.deb d64194c066fcc34283e19744d7be42ff520d703c 98368 krb5-admin-server_1.20.1-2+deb12u2_ppc64el.deb 8b1df75548b213de6632a242fc0d6ff8db6f3538 38068 krb5-gss-samples-dbgsym_1.20.1-2+deb12u2_ppc64el.deb 627b701edb1035be98e67dc52d824569c44e73fc 29580 krb5-gss-samples_1.20.1-2+deb12u2_ppc64el.deb 604ac0714feb78e12e8159aeacde54efe2b103a1 20836 krb5-k5tls-dbgsym_1.20.1-2+deb12u2_ppc64el.deb a43dc99369033008311a1e508303de39d2332159 19912 krb5-k5tls_1.20.1-2+deb12u2_ppc64el.deb b8173490617d41719595f22cadeb924b3e6859ba 462140 krb5-kdc-dbgsym_1.20.1-2+deb12u2_ppc64el.deb 88ccd4319a55a81d1f50d0f3ae895770b0b44b70 193376 krb5-kdc-ldap-dbgsym_1.20.1-2+deb12u2_ppc64el.deb 653c5f52d371251870f85efe35d7e86053fa2a17 98972 krb5-kdc-ldap_1.20.1-2+deb12u2_ppc64el.deb 1e9ea42f49ea743263bfbb34521e563e3d69e97b 196368 krb5-kdc_1.20.1-2+deb12u2_ppc64el.deb 91a4af88f5b5b72cf9def979c9298f9f490b0446 44844 krb5-kpropd-dbgsym_1.20.1-2+deb12u2_ppc64el.deb 2548c72db0809c2eb5f4dadcd05f595918d99fb5 31720 krb5-kpropd_1.20.1-2+deb12u2_ppc64el.deb 3e1ccae074da824a0afa76028624cd59b4d5217e 125044 krb5-multidev_1.20.1-2+deb12u2_ppc64el.deb d36628897ed8db705ed32f48a8851a1116cc3593 29724 krb5-otp-dbgsym_1.20.1-2+deb12u2_ppc64el.deb d64dc06dca3108610ac5201c8b4d586b9a11afac 22548 krb5-otp_1.20.1-2+deb12u2_ppc64el.deb 48fe4747e416840093a32adcdef9bcdea14ec713 160940 krb5-pkinit-dbgsym_1.20.1-2+deb12u2_ppc64el.deb 6234d0fe2506a63d94b9c0f0dbb60c6dfb980105 62648 krb5-pkinit_1.20.1-2+deb12u2_ppc64el.deb 9c5245300625318694b2aae0d1a411d020fb583f 203984 krb5-user-dbgsym_1.20.1-2+deb12u2_ppc64el.deb 90cf0b4d779a2e0af06e6ff481367418738aae97 125240 krb5-user_1.20.1-2+deb12u2_ppc64el.deb 7964a25ce7682c11bba9b03a2c7d38e0250f24c5 16020 krb5_1.20.1-2+deb12u2_ppc64el-buildd.buildinfo 4138035ed34bbba442e81d9709aad92cb21f167e 148920 libgssapi-krb5-2_1.20.1-2+deb12u2_ppc64el.deb cf5b579edda118be760eb59643c9b30545e26ab0 63280 libgssrpc4_1.20.1-2+deb12u2_ppc64el.deb f4ec414b2a4d841c49f9d0284b61f3140eb39b14 90000 libk5crypto3_1.20.1-2+deb12u2_ppc64el.deb b58b5c893e601b2313ae73b90665df1d07f999a9 43060 libkadm5clnt-mit12_1.20.1-2+deb12u2_ppc64el.deb fa81e4136b181db99b81a5c572e5493624739936 58024 libkadm5srv-mit12_1.20.1-2+deb12u2_ppc64el.deb ca60685ebdd3841ed3b9c11827a8e59977866be4 46044 libkdb5-10_1.20.1-2+deb12u2_ppc64el.deb 6278cb77f18abbe37bdeac905ebc55e85e2b548a 15304 libkrad-dev_1.20.1-2+deb12u2_ppc64el.deb e8c3b6e74b8ac33ef7a605de19f614d00b95d4a6 25656 libkrad0_1.20.1-2+deb12u2_ppc64el.deb a2db5401f0ef562353424590950102f774a8d0ec 363300 libkrb5-3_1.20.1-2+deb12u2_ppc64el.deb 2b0d142f47a32c3e0286fd95ba8f85d89c6a986c 2206684 libkrb5-dbg_1.20.1-2+deb12u2_ppc64el.deb 4c381b35a174c4ed42c4329049adf2c1c0dd3a41 14836 libkrb5-dev_1.20.1-2+deb12u2_ppc64el.deb 801e2795f0b9b1842ce6224c047e496944d67201 35736 libkrb5support0_1.20.1-2+deb12u2_ppc64el.deb Checksums-Sha256: 8f3ede3f81faccbee577ebed3eeadc5f20baf97d9cd3054db6e39768cf255135 213000 krb5-admin-server-dbgsym_1.20.1-2+deb12u2_ppc64el.deb 2b91326c1efe58e54e4e02d0f33d60aed22569e6b852976e67873eb186255e3a 98368 krb5-admin-server_1.20.1-2+deb12u2_ppc64el.deb 49a1b4ae324a502262c06c8d7387404cc864ba5975a45effd57aeb9c45a7f58d 38068 krb5-gss-samples-dbgsym_1.20.1-2+deb12u2_ppc64el.deb 49c08bb3c0c89c034d314e80447cbabdd104687cf4d79cdcc0d839925b1ab80e 29580 krb5-gss-samples_1.20.1-2+deb12u2_ppc64el.deb 6f5536ec0c930c7c77987edddc3cfa1d974eb72d8be4d3a37abc3c8ab8e5a41b 20836 krb5-k5tls-dbgsym_1.20.1-2+deb12u2_ppc64el.deb 7b7c6e60c59b7888545ae5f6f1e2960aa5c12568c4640760bfb120775b09dd5b 19912 krb5-k5tls_1.20.1-2+deb12u2_ppc64el.deb 2ef914136b42aee80f4bfd3015a19f94b341ae8fe3e3a91b95c8c4eaeec11aaf 462140 krb5-kdc-dbgsym_1.20.1-2+deb12u2_ppc64el.deb bdaf7461136e454fa4af069c8e36c276e074f5725974af94bf060d881efc059c 193376 krb5-kdc-ldap-dbgsym_1.20.1-2+deb12u2_ppc64el.deb 44b7db2373f7bacecf72723a9307d23c8ddc417837e4716e90b14a69a4e77ed6 98972 krb5-kdc-ldap_1.20.1-2+deb12u2_ppc64el.deb 7deaa9d97e95dbd1334e6cc9e0a899330e40483cb193e2969fbe69eda158f765 196368 krb5-kdc_1.20.1-2+deb12u2_ppc64el.deb 949236f8ebf21dc0789f5d0d1782c19fcc39a73121a770560bdafbc01610170a 44844 krb5-kpropd-dbgsym_1.20.1-2+deb12u2_ppc64el.deb d81f46b778524e982d399e4d1be2382006af6b01d3f749fd5fd8b9270684e146 31720 krb5-kpropd_1.20.1-2+deb12u2_ppc64el.deb 75d4c0a55721786087ce7f09e90db2ec3e56cd7f6e3b3062fbc22c15ace75a0d 125044 krb5-multidev_1.20.1-2+deb12u2_ppc64el.deb 0ae986d98caff7a2c831dc397e94758a44ff3718ed808dd551f61fa4a9a722ed 29724 krb5-otp-dbgsym_1.20.1-2+deb12u2_ppc64el.deb 503a17450508dbe0ac1567491dcd38aedb91227fe45b84134060bbbcaf78eada 22548 krb5-otp_1.20.1-2+deb12u2_ppc64el.deb 0514923af058ef556381e06bdca7d51f939e15e00feca989e99d316f4bd9b337 160940 krb5-pkinit-dbgsym_1.20.1-2+deb12u2_ppc64el.deb 7da0f686640d554ff5ea0c876444a89370fc5af61894b6404c32d91de7917112 62648 krb5-pkinit_1.20.1-2+deb12u2_ppc64el.deb 6776869154b4dbc81a36515d247f46d23662ae22175694d32116f791687c8791 203984 krb5-user-dbgsym_1.20.1-2+deb12u2_ppc64el.deb aa2895717e999e22f50e8cce1ce729d891792415b6c2a2d20a3f926d54ae72ec 125240 krb5-user_1.20.1-2+deb12u2_ppc64el.deb 653de4ca5b5c97949c3c0c6d7a0c5777c67bd68e94d2e888cf33e210a0718641 16020 krb5_1.20.1-2+deb12u2_ppc64el-buildd.buildinfo 43d0bb86b2eebe17366787c30edaea0fcb235ec6d1b4ee83f27243325c8287b6 148920 libgssapi-krb5-2_1.20.1-2+deb12u2_ppc64el.deb aae67700df23bf58859b50fce6a4270024e3030aac7e605376ddbe5eea077699 63280 libgssrpc4_1.20.1-2+deb12u2_ppc64el.deb 8fecb394a7aabe37fb58d44f5f47043ded2e21f7bf3ecdb25ab3ac37de8e490f 90000 libk5crypto3_1.20.1-2+deb12u2_ppc64el.deb 31daa43fb1e04cffaefd8bca69612a42441f175c1642e6bcc9984cbe9be2d424 43060 libkadm5clnt-mit12_1.20.1-2+deb12u2_ppc64el.deb a853ba49045c803cccaa7bc0bb05921a0a42a7948b8bf47924a4f3c2a28d141f 58024 libkadm5srv-mit12_1.20.1-2+deb12u2_ppc64el.deb f22f86afa553d70bbfbb10020a969cab4abb8c34bd67c0a4c268478479377f16 46044 libkdb5-10_1.20.1-2+deb12u2_ppc64el.deb 3a7bb035c9d4985533db950e30bd5f1b58a78d96d90093432ced8c28cf2de5be 15304 libkrad-dev_1.20.1-2+deb12u2_ppc64el.deb 599fdb2dcf9cc6c318cd3f2237b6853ae83d597294e5b03a0a48a32a9550d7b0 25656 libkrad0_1.20.1-2+deb12u2_ppc64el.deb f193bf6d0a521a6751474b0734e911cd76ccce8c02ac06d21a1f3fe2d659f177 363300 libkrb5-3_1.20.1-2+deb12u2_ppc64el.deb a8cc1a08d5e4ebbc725190cda54d69dbd0d17a5159f43249c801b7a0ac22b5cf 2206684 libkrb5-dbg_1.20.1-2+deb12u2_ppc64el.deb c96efaf888b4d1772c275a957d7f8988109d53618b03c411fbd290ef023c1fbf 14836 libkrb5-dev_1.20.1-2+deb12u2_ppc64el.deb 043ea83c7f7bcd229fe94b42f8de3a078ee11c7f56a4a61e18b4e1f93e54908b 35736 libkrb5support0_1.20.1-2+deb12u2_ppc64el.deb Files: 0987ce7229ac80564ab92c3f336b11d6 213000 debug optional krb5-admin-server-dbgsym_1.20.1-2+deb12u2_ppc64el.deb d15511b7ba2dab51ad89621cda817521 98368 net optional krb5-admin-server_1.20.1-2+deb12u2_ppc64el.deb 2aa04460e831b7d69bbc537ea9f7893b 38068 debug optional krb5-gss-samples-dbgsym_1.20.1-2+deb12u2_ppc64el.deb 5b5b6bfa98f90bdc0374126b79bdd552 29580 net optional krb5-gss-samples_1.20.1-2+deb12u2_ppc64el.deb e261e308e038199b191323c711f28ef6 20836 debug optional krb5-k5tls-dbgsym_1.20.1-2+deb12u2_ppc64el.deb 1e9449cfcdb2e3d52288fb29a57a1768 19912 net optional krb5-k5tls_1.20.1-2+deb12u2_ppc64el.deb b7e30b52df090e106956a0c422b081cc 462140 debug optional krb5-kdc-dbgsym_1.20.1-2+deb12u2_ppc64el.deb e236deb6fc5bcda48ff31ba56c95288d 193376 debug optional krb5-kdc-ldap-dbgsym_1.20.1-2+deb12u2_ppc64el.deb 89dabfd5f16149a4c2208682fa5496ff 98972 net optional krb5-kdc-ldap_1.20.1-2+deb12u2_ppc64el.deb 993caa9cfd531ac5c4b8c3d12b50bd27 196368 net optional krb5-kdc_1.20.1-2+deb12u2_ppc64el.deb e6500f0cfa25e8bf538309dd7f546327 44844 debug optional krb5-kpropd-dbgsym_1.20.1-2+deb12u2_ppc64el.deb 06dc4c5c7df42e84f6aec89864a9fcd5 31720 net optional krb5-kpropd_1.20.1-2+deb12u2_ppc64el.deb 38604a624789e83095f8795037b5b76f 125044 libdevel optional krb5-multidev_1.20.1-2+deb12u2_ppc64el.deb 9a3fea9ae3ca5d90c1c04814d58367fa 29724 debug optional krb5-otp-dbgsym_1.20.1-2+deb12u2_ppc64el.deb 89b65491857389216caede7dee97c183 22548 net optional krb5-otp_1.20.1-2+deb12u2_ppc64el.deb 721d34605d778122ad52db87dd7ee923 160940 debug optional krb5-pkinit-dbgsym_1.20.1-2+deb12u2_ppc64el.deb f1e0642478158cb177b2ffde207ae951 62648 net optional krb5-pkinit_1.20.1-2+deb12u2_ppc64el.deb 08ef60390f8541d6abdec7a7c2d22850 203984 debug optional krb5-user-dbgsym_1.20.1-2+deb12u2_ppc64el.deb 281251549447fec74e9e5d2385d35e18 125240 net optional krb5-user_1.20.1-2+deb12u2_ppc64el.deb 431d8311d23695df501b5043cbcd7ce4 16020 net optional krb5_1.20.1-2+deb12u2_ppc64el-buildd.buildinfo cd284c119293104dd9c5e5277046a67f 148920 libs optional libgssapi-krb5-2_1.20.1-2+deb12u2_ppc64el.deb d5f906212a344b5c3a673f5f33cff72e 63280 libs optional libgssrpc4_1.20.1-2+deb12u2_ppc64el.deb 755876e470b1f950f4880154d0a52a73 90000 libs optional libk5crypto3_1.20.1-2+deb12u2_ppc64el.deb 1d7ea3625cd99192b0947ab69d29f858 43060 libs optional libkadm5clnt-mit12_1.20.1-2+deb12u2_ppc64el.deb 4b1db374e65568c9a58b9ff82f256780 58024 libs optional libkadm5srv-mit12_1.20.1-2+deb12u2_ppc64el.deb 4f6a0410d571e96fd9242840b43bd633 46044 libs optional libkdb5-10_1.20.1-2+deb12u2_ppc64el.deb 7b8dff90cecccf3b4a8a5e479cf02128 15304 libdevel optional libkrad-dev_1.20.1-2+deb12u2_ppc64el.deb 6ebd0ba7740481e1ad488d1e5e98620d 25656 libs optional libkrad0_1.20.1-2+deb12u2_ppc64el.deb 8f10b6b11fc8d486f412a1b226787979 363300 libs optional libkrb5-3_1.20.1-2+deb12u2_ppc64el.deb fd55c3aeaaa9ae0dd117f581aea7ebda 2206684 debug optional libkrb5-dbg_1.20.1-2+deb12u2_ppc64el.deb 9ad23ea0d7efc42fb1e4a911ce49a17b 14836 libdevel optional libkrb5-dev_1.20.1-2+deb12u2_ppc64el.deb 926f2133b720a332519930b24f3bb177 35736 libs optional libkrb5support0_1.20.1-2+deb12u2_ppc64el.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEE5v3ycPFoB5xoBEprvMjydu+xvRMFAmaDBlgACgkQvMjydu+x vRMx8A/9G9SJ3qXxDLVCfTcR3z2+zUxAB1Or6PSFS2/WZArfUWpxssxY8BegEk1o GC2zenTAjDAVQiUWYPDapTgt1f7r+/+8Nty5zn6V2D39A45GZM+YS9K9NugcLygd Ord7KKPvbVHZloet2Tyer8PZYpNrGkHUywmVl/sFh2OINyjHXF2+4gAlCFSPDTMV j01gguKBxGXNbMlSLq8uNCHW3g4Bo+osC6fds1ViymsyXzsnzOomalBAsDhz0eF/ wUjVD787dWFDeWZmIYl/kQSYk9br4Nos9QBSCVDLC56i4VUtk40ATaBL1IC4VjgX KIikT8dOSSXNzhuLVph4Wvob1dZ6vVL2XbAFbneOGBl6YcGWJwP++oRCx3T9xVbV AXBOxdeG35IV1m8l+S88dUZVa3qZZSVXg5m11UfSliHcwiixcHVKJcTopdwWXDea yaeD0uQU+syJgb0nvBMSajhixgVBHrAgQFlXmuIuSvThHWBRtddfbGXWjSmPP3hb lTEHKlczqPu51Tv78Vx9EUwZGxJKTvbwHIVPZI3UTTc6Wu+wG0JBh6omXOXgtQtz s07rSz0CtcnF4KMkczAKPOqB9KJyjxF6uzRrHeVRudK7Dx9WeFVs3Q0efXzQaVr1 bZyzgIhhN+tz6D/pvUKmWsYl24LBdCE4coR8AueVn+h8pym6KFU= =loRM -----END PGP SIGNATURE-----