cyrus-sasl2 2.1.27+dfsg2-3ubuntu1 source package in Ubuntu

Changelog

cyrus-sasl2 (2.1.27+dfsg2-3ubuntu1) jammy; urgency=medium

  * SECURITY UPDATE: SQL injection in SQL plugin
    - debian/patches/CVE-2022-24407.patch: escape password for SQL
      insert/update commands in plugins/sql.c.
    - CVE-2022-24407

 -- Marc Deslauriers <email address hidden>  Tue, 22 Feb 2022 14:17:18 -0500

Upload details

Uploaded by:
Marc Deslauriers
Uploaded to:
Jammy
Original maintainer:
Ubuntu Developers
Architectures:
any all
Section:
devel
Urgency:
Medium Urgency

See full publishing history Publishing

Series Pocket Published Component Section
Jammy release main devel

Downloads

File Size SHA-256 Checksum
cyrus-sasl2_2.1.27+dfsg2.orig.tar.xz 810.4 KiB f3d90671718e7dc1d46db7ccbad548d60ffe1edd1e9a620e5d3b779e6a0a9326
cyrus-sasl2_2.1.27+dfsg2-3ubuntu1.debian.tar.xz 91.2 KiB 3908aecf2ea912eccdce937914db41fc4a175decd94b0b230272e2d59699f4a0
cyrus-sasl2_2.1.27+dfsg2-3ubuntu1.dsc 3.4 KiB 5717141cd03a8202978614e6fb9d8fbaa85a50605993b6ae9d0b91fa1c760079

View changes file

Binary packages built by this source

cyrus-sasl2-doc: Cyrus SASL - documentation

 This is the Cyrus SASL API implementation, version 2.1. See package
 libsasl2-2 and RFC 2222 for more information.
 .
 This package contains documentation for system administrators.

libsasl2-2: Cyrus SASL - authentication abstraction library

 This is the Cyrus SASL API implementation, version 2.1.
 .
 SASL is the Simple Authentication and Security Layer, a method for
 adding authentication support to connection-based protocols. To use
 SASL, a protocol includes a command for identifying and
 authenticating a user to a server and for optionally negotiating
 protection of subsequent protocol interactions. If its use is
 negotiated, a security layer is inserted between the protocol and the
 connection. See RFC 2222 for more information.
 .
 Any of: ANONYMOUS, SCRAM, CRAM-MD5, DIGEST-MD5, GSSAPI (MIT or Heimdal
 Kerberos 5), NTLM, OTP, PLAIN, or LOGIN can be used.

libsasl2-2-dbgsym: debug symbols for libsasl2-2
libsasl2-dev: Cyrus SASL - development files for authentication abstraction library

 This is the Cyrus SASL API implementation, version 2. See package
 libsasl2-2 and RFC 2222 for more information.
 .
 This package includes development files for compiling programs with SASL
 support. It is needed for development purposes only.

libsasl2-modules: Cyrus SASL - pluggable authentication modules

 This is the Cyrus SASL API implementation, version 2.1. See package
 libsasl2-2 and RFC 2222 for more information.
 .
 This package provides the following SASL modules: LOGIN, PLAIN, ANONYMOUS,
 NTLM, SCRAM, CRAM-MD5, and DIGEST-MD5 (with DES support, deprecated).

libsasl2-modules-db: Cyrus SASL - pluggable authentication modules (DB)

 This is the Cyrus SASL API implementation, version 2.1. See package
 libsasl2-2 and RFC 2222 for more information.
 .
 This package provides the DB plugin, which supports Berkeley DB lookups.

libsasl2-modules-db-dbgsym: debug symbols for libsasl2-modules-db
libsasl2-modules-dbgsym: debug symbols for libsasl2-modules
libsasl2-modules-gssapi-heimdal: Pluggable Authentication Modules for SASL (GSSAPI)

 This is the Cyrus SASL API implementation, version 2.1. See package
 libsasl2-2 and RFC 2222 for more information.
 .
 This package provides the GSSAPI plugin, compiled with the Heimdal
 Kerberos 5 library.

libsasl2-modules-gssapi-heimdal-dbgsym: debug symbols for libsasl2-modules-gssapi-heimdal
libsasl2-modules-gssapi-mit: Cyrus SASL - pluggable authentication modules (GSSAPI)

 This is the Cyrus SASL API implementation, version 2.1. See package
 libsasl2-2 and RFC 2222 for more information.
 .
 This package provides the GSSAPI plugin, compiled with the MIT
 Kerberos 5 library.

libsasl2-modules-gssapi-mit-dbgsym: debug symbols for libsasl2-modules-gssapi-mit
libsasl2-modules-ldap: Cyrus SASL - pluggable authentication modules (LDAP)

 This is the Cyrus SASL API implementation, version 2.1. See package
 libsasl2-2 and RFC 2222 for more information.
 .
 This package provides the LDAP plugin, which supports OpenLDAP.

libsasl2-modules-ldap-dbgsym: debug symbols for libsasl2-modules-ldap
libsasl2-modules-otp: Cyrus SASL - pluggable authentication modules (OTP)

 This is the Cyrus SASL API implementation, version 2.1. See package
 libsasl2-2 and RFC 2222 for more information.
 .
 This package provides the OTP plugin, which supports one time passwords.

libsasl2-modules-otp-dbgsym: debug symbols for libsasl2-modules-otp
libsasl2-modules-sql: Cyrus SASL - pluggable authentication modules (SQL)

 This is the Cyrus SASL API implementation, version 2.1. See package
 libsasl2-2 and RFC 2222 for more information.
 .
 This package provides the SQL plugin, which supports MySQL, PostgreSQL
 and SQLite.

libsasl2-modules-sql-dbgsym: debug symbols for libsasl2-modules-sql
sasl2-bin: Cyrus SASL - administration programs for SASL users database

 This is the Cyrus SASL API implementation, version 2.1. See package
 libsasl2-2 and RFC 2222 for more information.
 .
 This package contains administration programs for the SASL users
 database and common binary files for plugin modules.

sasl2-bin-dbgsym: debug symbols for sasl2-bin