-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Mon, 01 Jul 2024 13:40:03 -0600 Source: krb5 Binary: krb5-admin-server krb5-admin-server-dbgsym krb5-gss-samples krb5-gss-samples-dbgsym krb5-k5tls krb5-k5tls-dbgsym krb5-kdc krb5-kdc-dbgsym krb5-kdc-ldap krb5-kdc-ldap-dbgsym krb5-kpropd krb5-kpropd-dbgsym krb5-multidev krb5-otp krb5-otp-dbgsym krb5-pkinit krb5-pkinit-dbgsym krb5-user krb5-user-dbgsym libgssapi-krb5-2 libgssrpc4 libk5crypto3 libkadm5clnt-mit12 libkadm5srv-mit12 libkdb5-10 libkrad-dev libkrad0 libkrb5-3 libkrb5-dbg libkrb5-dev libkrb5support0 Architecture: armel Version: 1.18.3-6+deb11u5 Distribution: bullseye-security Urgency: high Maintainer: arm Build Daemon (arm-conova-02) Changed-By: Sam Hartman Description: krb5-admin-server - MIT Kerberos master server (kadmind) krb5-gss-samples - MIT Kerberos GSS Sample applications krb5-k5tls - TLS plugin for MIT Kerberos krb5-kdc - MIT Kerberos key server (KDC) krb5-kdc-ldap - MIT Kerberos key server (KDC) LDAP plugin krb5-kpropd - MIT Kerberos key server (Slave KDC Support) krb5-multidev - development files for MIT Kerberos without Heimdal conflict krb5-otp - OTP plugin for MIT Kerberos krb5-pkinit - PKINIT plugin for MIT Kerberos krb5-user - basic programs to authenticate using MIT Kerberos libgssapi-krb5-2 - MIT Kerberos runtime libraries - krb5 GSS-API Mechanism libgssrpc4 - MIT Kerberos runtime libraries - GSS enabled ONCRPC libk5crypto3 - MIT Kerberos runtime libraries - Crypto Library libkadm5clnt-mit12 - MIT Kerberos runtime libraries - Administration Clients libkadm5srv-mit12 - MIT Kerberos runtime libraries - KDC and Admin Server libkdb5-10 - MIT Kerberos runtime libraries - Kerberos database libkrad-dev - MIT Kerberos RADIUS Library Development libkrad0 - MIT Kerberos runtime libraries - RADIUS library libkrb5-3 - MIT Kerberos runtime libraries libkrb5-dbg - debugging files for MIT Kerberos libkrb5-dev - headers and development libraries for MIT Kerberos libkrb5support0 - MIT Kerberos runtime libraries - Support library Changes: krb5 (1.18.3-6+deb11u5) bullseye-security; urgency=high . * CVE-2024-37370: an unauthenticated attacker can modify the extra count in an RFC 4121 GSS token, causing the token to appear truncated. * CVE-2024-37371: an attacker can cause invalid memory reads by sending an invalid GSS token. Checksums-Sha1: 2a76ffe3bc2d7c355bd29c55d2e4d8db35248e43 194920 krb5-admin-server-dbgsym_1.18.3-6+deb11u5_armel.deb 06f7c91e93134aa42a8577eaa94e24336420ad05 116080 krb5-admin-server_1.18.3-6+deb11u5_armel.deb 3b2a77d3e34f4b4d25c9dfb24624c2aaaa5b391e 37116 krb5-gss-samples-dbgsym_1.18.3-6+deb11u5_armel.deb 7999ccefb9dc38ace5615d22ad33bd5e2eb05781 61184 krb5-gss-samples_1.18.3-6+deb11u5_armel.deb a8c9d67b59548cabe41bdc9ac452087a1a3adf0e 19980 krb5-k5tls-dbgsym_1.18.3-6+deb11u5_armel.deb 668958bf9b34f29504ff0b83812d7687b26d63d7 50988 krb5-k5tls_1.18.3-6+deb11u5_armel.deb 4c08bafa0701b47c9f0895d5969dc23291d37443 423548 krb5-kdc-dbgsym_1.18.3-6+deb11u5_armel.deb 3223764d74a3db45177230ca23cbd8ac700b3d11 180020 krb5-kdc-ldap-dbgsym_1.18.3-6+deb11u5_armel.deb be3b66cb26a1bb9f935d17cf08391b2cdf6905c7 112592 krb5-kdc-ldap_1.18.3-6+deb11u5_armel.deb 8f9dfc0cd2f498a4a425db2a50e3a976d53a0c1f 192192 krb5-kdc_1.18.3-6+deb11u5_armel.deb adfb383b817923f3aa49b9a5dda2bf7fff633703 42368 krb5-kpropd-dbgsym_1.18.3-6+deb11u5_armel.deb fd4c3a8323d92617212b96d963f8039cc2b870ff 63300 krb5-kpropd_1.18.3-6+deb11u5_armel.deb 30fea8fae30398085f032fb6ec9595c2b5a9d9df 157824 krb5-multidev_1.18.3-6+deb11u5_armel.deb b3f3152bcb43cb676277729fd39048216ab2b786 28644 krb5-otp-dbgsym_1.18.3-6+deb11u5_armel.deb ef829769b85eb79176675e2c962572dab5883a5e 53100 krb5-otp_1.18.3-6+deb11u5_armel.deb 71256a5361a611ec82d8e041bbe32a589fc1606f 145504 krb5-pkinit-dbgsym_1.18.3-6+deb11u5_armel.deb 16e4d9a4146e21135ad635145d3c2cc82d173b54 80160 krb5-pkinit_1.18.3-6+deb11u5_armel.deb f4676f4bff087e0b323a5774fde28f46ab44b3c9 191516 krb5-user-dbgsym_1.18.3-6+deb11u5_armel.deb 15c0346ff4a734e8de29c170942b24013ccccd60 144564 krb5-user_1.18.3-6+deb11u5_armel.deb 0022c65f2d7e6f8149ee08af58dad5619e0ba696 15891 krb5_1.18.3-6+deb11u5_armel-buildd.buildinfo aef90464d12bc783cbfaabd76f642e2924480272 142896 libgssapi-krb5-2_1.18.3-6+deb11u5_armel.deb 46fda3b4c2215d27a3e28e8b700bb11cacf1b757 84068 libgssrpc4_1.18.3-6+deb11u5_armel.deb e30d358b6aa757da118855b5d235356ab2409025 109136 libk5crypto3_1.18.3-6+deb11u5_armel.deb 3d19aea2b3943928a0cfca034b1514fbb4096f4c 68916 libkadm5clnt-mit12_1.18.3-6+deb11u5_armel.deb 2b32f1c85e4efd5460c8e5ce8aed14e9dea2ffa5 78548 libkadm5srv-mit12_1.18.3-6+deb11u5_armel.deb 8b2cf07b7143addaf37d61d36e95fb461738cccb 68372 libkdb5-10_1.18.3-6+deb11u5_armel.deb 6a22600010bf7f2bda95e80b83595a862ba010aa 48220 libkrad-dev_1.18.3-6+deb11u5_armel.deb dc2f7b201e100a6f1d9d9ea8af10fdccebbba726 55344 libkrad0_1.18.3-6+deb11u5_armel.deb 103832f174c99d30faa5814aef71bf75eab3bda3 317028 libkrb5-3_1.18.3-6+deb11u5_armel.deb 5efce8b40b16ce491ecee88c53aea3a6fe564c64 2119120 libkrb5-dbg_1.18.3-6+deb11u5_armel.deb 089edc898e0a98c1332d19c75654edb3c1e94fa2 47720 libkrb5-dev_1.18.3-6+deb11u5_armel.deb 56daeb4a99fa9362612a3ad847abc8dc605c9ffa 62604 libkrb5support0_1.18.3-6+deb11u5_armel.deb Checksums-Sha256: a47ed633f303a4457aa40e181636828ed73345cf1617f61b4bd002539f405077 194920 krb5-admin-server-dbgsym_1.18.3-6+deb11u5_armel.deb e783924e71ac7cd2188cc241d65fc02cd718cc1d86319e28d342950b848f8997 116080 krb5-admin-server_1.18.3-6+deb11u5_armel.deb a788f1b1537989a97295ca4771c4d21fef577ebf11785a625aae6c5eec5311e7 37116 krb5-gss-samples-dbgsym_1.18.3-6+deb11u5_armel.deb 892a2d501cc26f1080d263ed121de2e6a5e7b39daaf96ba71e3b4403a2d7e7fc 61184 krb5-gss-samples_1.18.3-6+deb11u5_armel.deb 325b608b2bf6eaee0434b2cd6cea7c6692a2fc937325b6be19081628f77b9466 19980 krb5-k5tls-dbgsym_1.18.3-6+deb11u5_armel.deb 6c0adba1dbeb59cfc053d54e1766f199a3bf2f7d18dbac04a4efc6e6ce082ad7 50988 krb5-k5tls_1.18.3-6+deb11u5_armel.deb b7dc2bee3d9acf183992ecdcd292471fda724cae563b71e7d1cc0d060398999a 423548 krb5-kdc-dbgsym_1.18.3-6+deb11u5_armel.deb 0228980d1b1e501a7a7a77dd10a7231a1f729034e8a9ebbcc930a2c5037bd6ab 180020 krb5-kdc-ldap-dbgsym_1.18.3-6+deb11u5_armel.deb f524b8b5c3261428e8584af639edae5f449d31623f4f62df3cf4ce03e1ea23f0 112592 krb5-kdc-ldap_1.18.3-6+deb11u5_armel.deb 52f42618626e1f48c4443726c6894ff973a80c35433b0fc8c62b50305ce53f85 192192 krb5-kdc_1.18.3-6+deb11u5_armel.deb c76d4462dd9b8ea998c2e6e93b1f2bc963fe20809092332f498ad9e7dfc2266f 42368 krb5-kpropd-dbgsym_1.18.3-6+deb11u5_armel.deb 4fc0c2776d9bbbd24069046d25ae7a47cb2da97b53080b23f8b85a6d8525a326 63300 krb5-kpropd_1.18.3-6+deb11u5_armel.deb d4886743ce0d2ce76bc0c1813cc3f90f97fdedd3bbc01bfc849c198713f93508 157824 krb5-multidev_1.18.3-6+deb11u5_armel.deb 4e98948fb50967a388a8776c573e0fa7591108b8608b6c1d503906c852d8eeee 28644 krb5-otp-dbgsym_1.18.3-6+deb11u5_armel.deb 1c75fd7c5bb01aa1e9cd0c3f26b0fda45aaaacab25b224d034de0ce1acd3b797 53100 krb5-otp_1.18.3-6+deb11u5_armel.deb ca81be258a06eb00aa8fdbb353979d139e5708935e30b37b1e17e3bb2838c728 145504 krb5-pkinit-dbgsym_1.18.3-6+deb11u5_armel.deb 2a38f4265c924b760f7ccdd6a09ffdc67bdbdb5993cb83d5526bed7a9e042109 80160 krb5-pkinit_1.18.3-6+deb11u5_armel.deb c629a6f0140fd94d6678b63a6057e068af405fcb8e07a5364818dcf8b7d17f6f 191516 krb5-user-dbgsym_1.18.3-6+deb11u5_armel.deb c12b275a17d877cf47613c272cb0b9c6c94741ee60d9b91f9116d0e3fd1d8896 144564 krb5-user_1.18.3-6+deb11u5_armel.deb 014a6fb627e38afa8228e8cd6441cff4c4be0832504ae75bef8641e5eddad4d4 15891 krb5_1.18.3-6+deb11u5_armel-buildd.buildinfo 8770468706418bac2786840094f31bdcc7a79e4571968946a410a9908fad07e6 142896 libgssapi-krb5-2_1.18.3-6+deb11u5_armel.deb bec8a27a7b7124d25d58853480e05a2ad5ab60153abc48163379932f5e770469 84068 libgssrpc4_1.18.3-6+deb11u5_armel.deb 1f5d3422b1b2904dbb3a733a7681f672dda0ae0b565a572be819d56f7a898f78 109136 libk5crypto3_1.18.3-6+deb11u5_armel.deb c3e16b8145815957411f1a25f1f5ae179f7e1b858f038b7495bae7814eb75184 68916 libkadm5clnt-mit12_1.18.3-6+deb11u5_armel.deb 94e045e3d0687e7b7cfad3c2ea5125291baeb4e95ec3ecb75df0cb27f30cff24 78548 libkadm5srv-mit12_1.18.3-6+deb11u5_armel.deb 2f1f208445f290f26783292b3c996c06803e271081a8f2a113ce2aaef8bc3f85 68372 libkdb5-10_1.18.3-6+deb11u5_armel.deb f658287213335f6e2787e161a95bdbd19f64606d2331e451f2f9ae4a9a71186c 48220 libkrad-dev_1.18.3-6+deb11u5_armel.deb accb66daefa13d9c7906e1b2b5471499d9c66417b31e546d548e98a971e74508 55344 libkrad0_1.18.3-6+deb11u5_armel.deb ee45adb5f40b7724867338a4d114685ea1a265cb0e0cb07fc303c289a0604e99 317028 libkrb5-3_1.18.3-6+deb11u5_armel.deb a48563ec7fb0aa72a062e0d2955abd62cfb6d0cec7f2ce1f7401a762aafe137f 2119120 libkrb5-dbg_1.18.3-6+deb11u5_armel.deb 5758a69d7ab0b295d612bd1d7bf21de93b29fa83da3fc0dd6c5f82617a6f0ba3 47720 libkrb5-dev_1.18.3-6+deb11u5_armel.deb 93a6407167990566ea22686e52f6c185703112cc821c423671f2655e948263af 62604 libkrb5support0_1.18.3-6+deb11u5_armel.deb Files: 067c301ba0de9d2b1a65a95c7af9b59c 194920 debug optional krb5-admin-server-dbgsym_1.18.3-6+deb11u5_armel.deb 5f62cd8e6358258c8df40bb468b255f0 116080 net optional krb5-admin-server_1.18.3-6+deb11u5_armel.deb 7ac1cb074fdfe38d708628df70c3761b 37116 debug optional krb5-gss-samples-dbgsym_1.18.3-6+deb11u5_armel.deb efca6b9c6f775969d707461fdfe108d3 61184 net optional krb5-gss-samples_1.18.3-6+deb11u5_armel.deb 3e60b5942454aff3e5956ea6705b81bb 19980 debug optional krb5-k5tls-dbgsym_1.18.3-6+deb11u5_armel.deb 005b6b0a80e087c4e612738277a1dc86 50988 net optional krb5-k5tls_1.18.3-6+deb11u5_armel.deb 8b8e934d5859dc8a86f1a6404e32e128 423548 debug optional krb5-kdc-dbgsym_1.18.3-6+deb11u5_armel.deb 70654e0e064ac9225d1e9bfe8ad2b1e1 180020 debug optional krb5-kdc-ldap-dbgsym_1.18.3-6+deb11u5_armel.deb 3ad2c4f172acf0e9a414ee149333ac1e 112592 net optional krb5-kdc-ldap_1.18.3-6+deb11u5_armel.deb dac56f97cba410d7972bb2a93190e496 192192 net optional krb5-kdc_1.18.3-6+deb11u5_armel.deb b25c9a13b779c2287e04dc4e46c901aa 42368 debug optional krb5-kpropd-dbgsym_1.18.3-6+deb11u5_armel.deb da6690aeec992afcfbcc84dd86e6c642 63300 net optional krb5-kpropd_1.18.3-6+deb11u5_armel.deb 77e8c87c9f5c27d9a364c3e6e351e368 157824 libdevel optional krb5-multidev_1.18.3-6+deb11u5_armel.deb 7b354fa0bf61af60d6a0426629abc16a 28644 debug optional krb5-otp-dbgsym_1.18.3-6+deb11u5_armel.deb f1cd6ca35ae08bd4f7253895d4214be2 53100 net optional krb5-otp_1.18.3-6+deb11u5_armel.deb 0381e89f6e388e3bdabb85136d8b0e01 145504 debug optional krb5-pkinit-dbgsym_1.18.3-6+deb11u5_armel.deb 352094d72d5f6c32f65ccde623426883 80160 net optional krb5-pkinit_1.18.3-6+deb11u5_armel.deb ae7fb70677502e3d945dda7bf987e80f 191516 debug optional krb5-user-dbgsym_1.18.3-6+deb11u5_armel.deb dacdcc0d3eb409a8eed6ed306ca0c0e8 144564 net optional krb5-user_1.18.3-6+deb11u5_armel.deb 41aa96aecf251223c0fa6a65c61a0280 15891 net optional krb5_1.18.3-6+deb11u5_armel-buildd.buildinfo 217b939c5e38ec5f0f0b815d3178484a 142896 libs optional libgssapi-krb5-2_1.18.3-6+deb11u5_armel.deb c92fda1d68977371960e1be0a6f121d1 84068 libs optional libgssrpc4_1.18.3-6+deb11u5_armel.deb 65d3ae22640dafe651198338a0c2e737 109136 libs optional libk5crypto3_1.18.3-6+deb11u5_armel.deb 6cc9d2b587183dc7dea8c1f91abdc530 68916 libs optional libkadm5clnt-mit12_1.18.3-6+deb11u5_armel.deb e4a4045002cd6f057fe4363780605a95 78548 libs optional libkadm5srv-mit12_1.18.3-6+deb11u5_armel.deb ae5a7420f89dc060dc13c5ab55da048b 68372 libs optional libkdb5-10_1.18.3-6+deb11u5_armel.deb b9bd19195323ebf8bbe78024c457ef50 48220 libdevel optional libkrad-dev_1.18.3-6+deb11u5_armel.deb 75937a9f6455d5ce8000771c30f265a0 55344 libs optional libkrad0_1.18.3-6+deb11u5_armel.deb 3a05fa0b2d5552737e2b8cc6c1b31eff 317028 libs optional libkrb5-3_1.18.3-6+deb11u5_armel.deb 5cda95fbd99f63de0fadc9a79f20c356 2119120 debug optional libkrb5-dbg_1.18.3-6+deb11u5_armel.deb d4c9cedead20f581ef1f1ff81836d752 47720 libdevel optional libkrb5-dev_1.18.3-6+deb11u5_armel.deb e43ca649c7fe71e950797153c9378991 62604 libs optional libkrb5support0_1.18.3-6+deb11u5_armel.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEBv+o19JDIRm4yIQ5CeROIpkCGwcFAmaDGqMACgkQCeROIpkC GwdlZQ/+MgAO/j05Z2P1G5LOkwsmYzUV3Okgg3LYX24z1nPn6jc9a9sgA1aKtT14 U/1npjfN0fztZn8PBbXO/kWf7ZzqzcS+pPFmDKUG5PMsckqNgGkLlJk925vZyelS PZU4SIPtJgCA35b1Mahwumo+pDQGM1bO9fZd1NwrhgcNgV10oNtVIIGRmo+NuayE GxrpMEClzE1PVRZ0TtNzg9yrfBVvkpt5Ki4TSMjU0uWGJdbBQuaSaGIhTSAFKfCN ltM9XWPTCCxaquLN0rmT1BKrWhcfIYT+E18mKI0QHzcTEfCt2QGhfizl2U5HN6B3 lhJgi+ZSwfEoKukWdG7ZebVXHUdp1LZ46Pw2nRWotCZqrZDVqh20jpwpizK6zT21 gE+FuWfADOxi1LcpK2wrnnf8KOaEcPW3++UZozSbiYASmPnT5pZxWb0fv+NSoCki xboCh1PL+CKyL7htJ1sdMH1Tu9YD8ALkqrPfGsxCHR8qW25M2P55E6O2E3x8+uoR WwFmsdb1AjU+H/enLoNOsy5SeGy8cIl/HPWVgGdKd+aJlu8TAurmLcum4oIU8uc5 WjQ7CiDKrNriH3BQkXAXM2chG8Akd03WjRrt4UAyxxYd7y8ZxmOCgH2E1LvpQDc0 Bstu3IrSSOOCf8XxDHLP+UIJttELdaOOWzzCoh1A3T1cm+A1woo= =xSf9 -----END PGP SIGNATURE-----