heimdal 7.8.git20221117.28daf24+dfsg-1ubuntu1 source package in Ubuntu

Changelog

heimdal (7.8.git20221117.28daf24+dfsg-1ubuntu1) lunar; urgency=low

  * Merge from Debian unstable. Remaining changes:
    - d/rules: Disable lto, to regain dep on roken, otherwise
      dependencies on amd64 are different than i386 resulting in
      different files on amd64 and i386.
      (LP #1934936)

heimdal (7.8.git20221117.28daf24+dfsg-1) unstable; urgency=medium

  * New upstream release.

heimdal (7.8.git20221115.a6cf945+dfsg-3) unstable; urgency=medium

  * Source-only upload to enable migration to testingi (2nd attempt).

heimdal (7.8.git20221115.a6cf945+dfsg-2) unstable; urgency=medium

  * Source-only upload to enable migration to testing.

heimdal (7.8.git20221115.a6cf945+dfsg-1) unstable; urgency=medium

  * New upstream version.
  * Numerous security fixes (Closes: #1024187).
  * asn1: Invalid free in ASN.1 codec (CVE-2022-44640)
  * krb5: PAC parse integer overflows (CVE-2022-42898)
  * gsskrb5: Use constant-time memcmp() for arcfour unwrap (CVE-2022-3437)
  * gsskrb5: Use constant-time memcmp() in unwrap_des3() (CVE-2022-3437)
  * gsskrb5: Don't pass NULL pointers to memcpy() in DES unwrap
    (CVE-2022-3437)
  * gsskrb5: Avoid undefined behaviour in _gssapi_verify_pad()
    (CVE-2022-3437)
  * gsskrb5: Check the result of _gsskrb5_get_mech() (CVE-2022-3437)
  * gsskrb5: Check buffer length against overflow for DES{,3} unwrap
    (CVE-2022-3437)
  * gsskrb5: Check for overflow in _gsskrb5_get_mech() (CVE-2022-3437)
  * gsskrb5: Pass correct length to _gssapi_verify_pad() (CVE-2022-3437)
  * libhx509: Fix denial of service vulnerability (CVE-2022-41916)
  * spnego: send_reject when no mech selected (CVE-2021-44758)
  * Fix regression in _krb5_get_int64 on 32 bit systems.
    https://github.com/heimdal/heimdal/pull/1025
  * Increment soname for libroken.
  * Increment soname for libhcrypto.
  * Remove legacy shared library version requirements.
  * Add symbols to libkadm5srv8.

 -- Steve Langasek <email address hidden>  Tue, 24 Jan 2023 19:14:54 -0800

Upload details

Uploaded by:
Steve Langasek
Uploaded to:
Lunar
Original maintainer:
Ubuntu Developers
Architectures:
any all
Section:
net
Urgency:
Medium Urgency

See full publishing history Publishing

Series Pocket Published Component Section
Lunar release universe net

Downloads

File Size SHA-256 Checksum
heimdal_7.8.git20221117.28daf24+dfsg.orig.tar.xz 7.4 MiB ae703f84856b98609985f8c63ed2d414c69fe8d55147137b3a71136621ffd454
heimdal_7.8.git20221117.28daf24+dfsg-1ubuntu1.debian.tar.xz 125.4 KiB 66697b7ae7acc9bb45532b69952367e5866a884ee65902392743e933c4734182
heimdal_7.8.git20221117.28daf24+dfsg-1ubuntu1.dsc 3.7 KiB 9c17752e64ae4e13f180ea87afad77ae49dcfa39576e0239fa25a7dd177edda3

View changes file

Binary packages built by this source

heimdal-clients: Heimdal Kerberos - clients

 Heimdal is a free implementation of Kerberos 5 that aims to be
 compatible with MIT Kerberos.
 .
 This package includes Kerberos utilities like kadmin, kinit, kpasswd and
 klist.

heimdal-clients-dbgsym: debug symbols for heimdal-clients
heimdal-dev: Heimdal Kerberos - development files

 Heimdal is a free implementation of Kerberos 5 that aims to be
 compatible with MIT Kerberos.
 .
 This is the development package, required for developing
 programs for Heimdal.

heimdal-docs: Heimdal Kerberos - documentation

 Heimdal is a free implementation of Kerberos 5 that aims to be
 compatible with MIT Kerberos.
 .
 This package includes documentation (in info format) on how to
 use Heimdal, and relevant standards for Kerberos.

heimdal-kcm: Heimdal Kerberos - KCM daemon

 Heimdal is a free implementation of Kerberos 5 that aims to be
 compatible with MIT Kerberos.
 .
 This package includes the KCM daemon which can hold the credentials
 for all users in the system. Access control is done with Unix-like
 permissions. The daemon checks the access on all operations based on
 the UID and GID of the user. The tickets are renewed as long as is
 permitted by the KDC's policy.

heimdal-kcm-dbgsym: debug symbols for heimdal-kcm
heimdal-kdc: Heimdal Kerberos - key distribution center (KDC)

 Heimdal is a free implementation of Kerberos 5 that aims to be
 compatible with MIT Kerberos.
 .
 This package includes the KDC (key distribution center) server,
 which is designed to run on a secure computer and keeps track
 of users' passwords. This is done using the Kerberos protocol in
 such a way that the server computers do not need to know the
 passwords.

heimdal-kdc-dbgsym: debug symbols for heimdal-kdc
heimdal-multidev: Heimdal Kerberos - Multi-implementation Development

 Heimdal is a free implementation of Kerberos 5 that aims to be
 compatible with MIT Kerberos.
 .
 This package provides versions of the Heimdal development files that
 can be installed along-side MIT Kerberos development files.
 Normally, heimdal-dev should be used. However if a package needs to
 build against both Heimdal Kerberos and MIT Kerberos, then the
 multidev package should be used.

heimdal-multidev-dbgsym: debug symbols for heimdal-multidev
heimdal-servers: Heimdal Kerberos - server programs

 Heimdal is a free implementation of Kerberos 5 that aims to be
 compatible with MIT Kerberos.
 .
 This package contains the kfd server, for receiving forwarded tickets.

heimdal-servers-dbgsym: debug symbols for heimdal-servers
libasn1-8-heimdal: Heimdal Kerberos - ASN.1 library

 Heimdal is a free implementation of Kerberos 5 that aims to be
 compatible with MIT Kerberos.
 .
 This package contains the ASN.1 parser required for Heimdal.

libasn1-8-heimdal-dbgsym: debug symbols for libasn1-8-heimdal
libgssapi3-heimdal: Heimdal Kerberos - GSSAPI support library

 Heimdal is a free implementation of Kerberos 5 that aims to be
 compatible with MIT Kerberos.
 .
 This package contains the library for GSSAPI support.

libgssapi3-heimdal-dbgsym: debug symbols for libgssapi3-heimdal
libhcrypto5-heimdal: Heimdal Kerberos - crypto library

 Heimdal is a free implementation of Kerberos 5 that aims to be
 compatible with MIT Kerberos.
 .
 This package contains the cryptographic library required for Heimdal.

libhcrypto5-heimdal-dbgsym: debug symbols for libhcrypto5-heimdal
libhdb9-heimdal: Heimdal Kerberos - kadmin server library

 Heimdal is a free implementation of Kerberos 5 that aims to be
 compatible with MIT Kerberos.
 .
 This package contains the library for storing the KDC database.

libhdb9-heimdal-dbgsym: debug symbols for libhdb9-heimdal
libheimbase1-heimdal: Heimdal Kerberos - Base library

 Heimdal is a free implementation of Kerberos 5 that aims to be
 compatible with MIT Kerberos.
 .
 This package contains the base library.

libheimbase1-heimdal-dbgsym: debug symbols for libheimbase1-heimdal
libheimntlm0-heimdal: Heimdal Kerberos - NTLM support library

 Heimdal is a free implementation of Kerberos 5 that aims to be
 compatible with MIT Kerberos.
 .
 This package contains the NTLM support library.

libheimntlm0-heimdal-dbgsym: debug symbols for libheimntlm0-heimdal
libhx509-5-heimdal: Heimdal Kerberos - X509 support library

 Heimdal is a free implementation of Kerberos 5 that aims to be
 compatible with MIT Kerberos.
 .
 This package contains the x509 supportlibrary.

libhx509-5-heimdal-dbgsym: debug symbols for libhx509-5-heimdal
libkadm5clnt7-heimdal: Heimdal Kerberos - kadmin client library

 Heimdal is a free implementation of Kerberos 5 that aims to be
 compatible with MIT Kerberos.
 .
 This package contains the client library for kadmin.

libkadm5clnt7-heimdal-dbgsym: debug symbols for libkadm5clnt7-heimdal
libkadm5srv8-heimdal: Libraries for Heimdal Kerberos

 Heimdal is a free implementation of Kerberos 5, that aims to be
 compatible with MIT Kerberos.
 .
 This package contains the server library for kadmin.

libkadm5srv8-heimdal-dbgsym: debug symbols for libkadm5srv8-heimdal
libkafs0-heimdal: Heimdal Kerberos - KAFS support library

 Heimdal is a free implementation of Kerberos 5 that aims to be
 compatible with MIT Kerberos.
 .
 This package contains the library for KAFS support.

libkafs0-heimdal-dbgsym: debug symbols for libkafs0-heimdal
libkdc2-heimdal: Heimdal Kerberos - KDC support library

 Heimdal is a free implementation of Kerberos 5 that aims to be
 compatible with MIT Kerberos.
 .
 This package contains the KDC support library.

libkdc2-heimdal-dbgsym: debug symbols for libkdc2-heimdal
libkrb5-26-heimdal: Heimdal Kerberos - libraries

 Heimdal is a free implementation of Kerberos 5 that aims to be
 compatible with MIT Kerberos.
 .
 This package contains the Kerberos 5 library.

libkrb5-26-heimdal-dbgsym: debug symbols for libkrb5-26-heimdal
libotp0-heimdal: Heimdal Kerberos - OTP support library

 Heimdal is a free implementation of Kerberos 5 that aims to be
 compatible with MIT Kerberos.
 .
 This package contains the library for OTP support.

libotp0-heimdal-dbgsym: debug symbols for libotp0-heimdal
libroken19-heimdal: Heimdal Kerberos - roken support library

 Heimdal is a free implementation of Kerberos 5 that aims to be
 compatible with MIT Kerberos.
 .
 This package contains the library for roken support.

libroken19-heimdal-dbgsym: debug symbols for libroken19-heimdal
libsl0-heimdal: Heimdal Kerberos - SL support library

 Heimdal is a free implementation of Kerberos 5 that aims to be
 compatible with MIT Kerberos.
 .
 This package contains the library for SL support.

libsl0-heimdal-dbgsym: debug symbols for libsl0-heimdal
libwind0-heimdal: Heimdal Kerberos - stringprep implementation

 Heimdal is a free implementation of Kerberos 5 that aims to be
 compatible with MIT Kerberos.
 .
 This package contains the stringprep library.

libwind0-heimdal-dbgsym: debug symbols for libwind0-heimdal