|
@@ -19,7 +19,7 @@ Summary: The Kerberos network authentication system.
|
|
Summary(ja): Kerberos ネットワーク認証システム
|
|
Summary(ja): Kerberos ネットワーク認証システム
|
|
Name: krb5
|
|
Name: krb5
|
|
Version: 1.6.3
|
|
Version: 1.6.3
|
|
-Release: 5%{?_dist_release}
|
|
|
|
|
|
+Release: 7%{?_dist_release}
|
|
# Maybe we should explode from the now-available-to-everybody tarball instead?
|
|
# Maybe we should explode from the now-available-to-everybody tarball instead?
|
|
# http://web.mit.edu/kerberos/dist/krb5/1.6/krb5-1.6.2-signed.tar
|
|
# http://web.mit.edu/kerberos/dist/krb5/1.6/krb5-1.6.2-signed.tar
|
|
Source0: krb5-%{version}.tar.gz
|
|
Source0: krb5-%{version}.tar.gz
|
|
@@ -109,6 +109,8 @@ Patch82: krb5-CVE-2009-0844-0845-2.patch
|
|
Patch83: krb5-CVE-2009-0846.patch
|
|
Patch83: krb5-CVE-2009-0846.patch
|
|
Patch84: krb5-CVE-2009-0847.patch
|
|
Patch84: krb5-CVE-2009-0847.patch
|
|
Patch85: krb5-1.6_CVE-2009-4212.patch
|
|
Patch85: krb5-1.6_CVE-2009-4212.patch
|
|
|
|
+Patch86: krb5-CVE-2010-0629.patch
|
|
|
|
+Patch87: http://web.mit.edu/kerberos/advisories/2010-005-patch_r16.txt
|
|
|
|
|
|
License: MIT
|
|
License: MIT
|
|
URL: http://web.mit.edu/kerberos/www/
|
|
URL: http://web.mit.edu/kerberos/www/
|
|
@@ -131,6 +133,9 @@ BuildRequires: openldap-devel
|
|
BuildRequires: openssl-devel >= 0.9.8
|
|
BuildRequires: openssl-devel >= 0.9.8
|
|
%endif
|
|
%endif
|
|
|
|
|
|
|
|
+Vendor: Project Vine
|
|
|
|
+Distribution: Vine Linux
|
|
|
|
+
|
|
%description
|
|
%description
|
|
Kerberos V5 is a trusted-third-party network authentication system,
|
|
Kerberos V5 is a trusted-third-party network authentication system,
|
|
which can improve your network's security by eliminating the insecure
|
|
which can improve your network's security by eliminating the insecure
|
|
@@ -358,6 +363,8 @@ popd
|
|
%patch83 -p1 -b .CVE-2009-0846
|
|
%patch83 -p1 -b .CVE-2009-0846
|
|
%patch84 -p1 -b .CVE-2009-0847
|
|
%patch84 -p1 -b .CVE-2009-0847
|
|
%patch85 -p0 -b .CVE-2009-4212
|
|
%patch85 -p0 -b .CVE-2009-4212
|
|
|
|
+%patch86 -p0 -b .CVE-2010-0629
|
|
|
|
+%patch87 -p1 -b .CVE-2010-1321
|
|
|
|
|
|
cp src/krb524/README README.krb524
|
|
cp src/krb524/README README.krb524
|
|
gzip doc/*.ps
|
|
gzip doc/*.ps
|
|
@@ -978,6 +985,13 @@ exit 0
|
|
%endif
|
|
%endif
|
|
|
|
|
|
%changelog
|
|
%changelog
|
|
|
|
+* Fri May 21 2010 Satoshi IWAMOTO <satoshi.iwamoto@nifty.ne.jp> 1.6.3-7
|
|
|
|
+- add patch87 for fix CVE-2010-1321 (GSS API Null pointer def)
|
|
|
|
+
|
|
|
|
+* Sat Apr 10 2010 Satoshi IWAMOTO <satoshi.iwamoto@nifty.ne.jp> 1.6.3-6
|
|
|
|
+- add patch86 for fix CVE-2010-0629 (kadmind DoS)
|
|
|
|
+- add Vendor/Distribution tags
|
|
|
|
+
|
|
* Thu Jan 14 2010 Satoshi IWAMOTO <satoshi.iwamoto@nifty.ne.jp> 1.6.3-5
|
|
* Thu Jan 14 2010 Satoshi IWAMOTO <satoshi.iwamoto@nifty.ne.jp> 1.6.3-5
|
|
- add Patch85 for fix CVE-2009-4212 (AES and RC4 Decryption)
|
|
- add Patch85 for fix CVE-2009-4212 (AES and RC4 Decryption)
|
|
|
|
|