krb5-1.6.1-36AXS3.1
エラータID: AXSA:2010-49:01
Release date:
Tuesday, January 19, 2010 - 14:39
Subject:
krb5-1.6.1-36AXS3.1
Affected Channels:
Asianux Server 3 for x86_64
Asianux Server 3 for x86
Severity:
High
Description:
Kerberos is a network authentication system. The krb5-devel package
contains the header files and libraries needed for compiling Kerberos
5 programs. If you want to develop Kerberos-aware programs, you need
to install this package.
Security issues fixed with this release:
CVE-2009-4212
Multiple integer underflows in the (1) AES and (2) RC4 decryption functionality in the crypto library in MIT Kerberos 5 (aka krb5) 1.3 through 1.6.3, and 1.7 before 1.7.1, allow remote attackers to cause a denial of service (daemon crash) or possibly execute arbitrary code by providing ciphertext with a length that is too short to be valid.
Solution:
Update packages.
CVEs:
CVE-2009-4212
Multiple integer underflows in the (1) AES and (2) RC4 decryption functionality in the crypto library in MIT Kerberos 5 (aka krb5) 1.3 through 1.6.3, and 1.7 before 1.7.1, allow remote attackers to cause a denial of service (daemon crash) or possibly execute arbitrary code by providing ciphertext with a length that is too short to be valid.
Multiple integer underflows in the (1) AES and (2) RC4 decryption functionality in the crypto library in MIT Kerberos 5 (aka krb5) 1.3 through 1.6.3, and 1.7 before 1.7.1, allow remote attackers to cause a denial of service (daemon crash) or possibly execute arbitrary code by providing ciphertext with a length that is too short to be valid.
Additional Info:
N/A
Download:
SRPMS
- krb5-1.6.1-36.AXS3.1.src.rpm
MD5: fba128a9d2756ca4757eb2a45f5f170b
SHA-256: 9de3676b45b418a0504c93a0d71f69301809f88265c41b450de4921265f7c9ac
Size: 14.95 MB
Asianux Server 3 for x86
- krb5-devel-1.6.1-36.AXS3.1.i386.rpm
MD5: 277c419941f2e2cc9937cbe40ff65db1
SHA-256: 6a4c1809d7484c5d156fa32be1063412b3dc38a3a83e290d410b2dd81505f7f5
Size: 1.85 MB - krb5-libs-1.6.1-36.AXS3.1.i386.rpm
MD5: ac9a72494d0072b1d86d82ea99886f62
SHA-256: fc9165db51eb6f973ee9fa6ddd947a687939051fe84715abad6006d8d1100d79
Size: 661.90 kB - krb5-server-1.6.1-36.AXS3.1.i386.rpm
MD5: c0c1f9424bb306f80d8a214d15f8e5d9
SHA-256: b9f68ffe3d8ebd6419ad064c629d573ed32c1ec50e80ec8f36329860e2ef6cad
Size: 907.05 kB - krb5-workstation-1.6.1-36.AXS3.1.i386.rpm
MD5: 2e617404dab789c63a42409ceed0ab12
SHA-256: a264c518d2650215134869f6b078a3b5e79854563254bcb01d66c3d0a5c8a68c
Size: 823.49 kB
Asianux Server 3 for x86_64
- krb5-devel-1.6.1-36.AXS3.1.x86_64.rpm
MD5: e4d1544360891f51ba5c9034b1849e2f
SHA-256: c6b780ee787fda0dc4fbe83a38eba2d80fa22486bc45799f990907da4edf3d8d
Size: 1.87 MB - krb5-libs-1.6.1-36.AXS3.1.x86_64.rpm
MD5: 17bc4add093b24a49d13f06cea4fbadf
SHA-256: 173bd6eeb2583be8278a15de01a4887b36fd3f7249d14003213b5c98aa8a186e
Size: 674.31 kB - krb5-server-1.6.1-36.AXS3.1.x86_64.rpm
MD5: 73a310510650dc49ac0e573fd0212552
SHA-256: 62fce797af4433d596cd558e6752e6df3cee4eb66be6e2651a551159ce1d5ba9
Size: 915.27 kB - krb5-workstation-1.6.1-36.AXS3.1.x86_64.rpm
MD5: 20cc5238b45596b1184f648037bf7b7c
SHA-256: fbc33358131bd47fecf72b80869d980a736f4057791fccc790cdfdf2d2684aa0
Size: 850.30 kB