| Commit message (Collapse) | Author | Age | Files | Lines |
| |
|
|
|
|
|
|
|
|
|
|
| |
Security: US-CERT Technical Cyber Security Alert TA08-079B --
MIT Kerberos Updates for Multiple Vulnerabilities
US-CERT Vulnerability Note VU#895609,
US-CERT Vulnerability Note VU#374121
MIT krb5 Security Advisory 2008-001
MIT krb5 Security Advisory 2008-002
Notes:
svn path=/head/; revision=209396
|
| |
|
|
| |
Notes:
svn path=/head/; revision=202364
|
| |
|
|
|
|
|
|
| |
PR: 117469
Submitted by: Karen Andrews <dearmiss@optusnet.com.au>
Notes:
svn path=/head/; revision=202026
|
| |
|
|
|
|
|
| |
Pointy hat to: yours truly
Notes:
svn path=/head/; revision=191428
|
| |
|
|
| |
Notes:
svn path=/head/; revision=190763
|
| |
|
|
|
|
|
|
|
|
|
|
|
| |
1. MIT krb5 Security Advisory 2007-001: Telnetd allows login as arbitrary user
CVE: CVE-2007-0956
CERT: VU#220816
2. MIT krb5 Security Advisory 2007-002: KDC, kadmind stack overflow in krb5_klog_syslog
CVE: CVE-2007-0957
CERT: VU#704024
Notes:
svn path=/head/; revision=189230
|
| |
|
|
|
|
|
|
| |
Obtained from: MIT krb5 Security Advisory 2007-003
Security: US-CERT Technical Cyber Security Alert TA07-093B -- MIT Kerberos Vulnerabilities
Notes:
svn path=/head/; revision=189138
|
| |
|
|
|
|
|
| |
Reported by: pointyhat
Notes:
svn path=/head/; revision=188681
|
| |
|
|
|
|
|
|
| |
Security: MITKRB5-SA-2006-002, MITKRB5-SA-2006-003, and
US-CERT Technical Cyber Security Alert TA07-009B
Notes:
svn path=/head/; revision=181950
|
| |
|
|
|
|
|
| |
Submitted by: Paul Vixie <paul@vix.com>
Notes:
svn path=/head/; revision=173170
|
| |
|
|
|
|
|
|
| |
for situations when the database is replicated to a secure environment
that does not have network access, by hand.
Notes:
svn path=/head/; revision=167987
|
| |
|
|
| |
Notes:
svn path=/head/; revision=167985
|
| |
|
|
| |
Notes:
svn path=/head/; revision=167821
|
| |
|
|
|
|
|
| |
Approved by: portmgr (kris)
Notes:
svn path=/head/; revision=156749
|
| |
|
|
| |
Notes:
svn path=/head/; revision=149473
|
| |
|
|
|
|
|
| |
PR: 87888
Notes:
svn path=/head/; revision=147618
|
| |
|
|
| |
Notes:
svn path=/head/; revision=146877
|
| |
|
|
| |
Notes:
svn path=/head/; revision=144205
|
| |
|
|
|
|
|
|
|
| |
- MIT KRB5 Security Advisory 2005-002: Buffer overflow, heap corruption in KDC
- MIT KRB5 Security Advisory 2005-003: Double free in krb5_recvauth
Notes:
svn path=/head/; revision=139005
|
| |
|
|
|
|
|
| |
Package list fixup when KRB5_KRB4_COMPAT is not specified.
Notes:
svn path=/head/; revision=133976
|
| |
|
|
| |
Notes:
svn path=/head/; revision=133191
|
| |
|
|
|
|
|
|
| |
Approved by: portsmgr (krion)
Obtained from: Tom Yu <tlyu@mit.edu> on kerberos-announce
Notes:
svn path=/head/; revision=132133
|
| |
|
|
| |
Notes:
svn path=/head/; revision=119872
|
| |
|
|
|
|
|
|
|
| |
in KDC and libraries
Heads-up by: nectar
Notes:
svn path=/head/; revision=117861
|
| |
|
|
|
|
|
| |
Heads-up by: nectar
Notes:
svn path=/head/; revision=117839
|
| |
|
|
| |
Notes:
svn path=/head/; revision=111315
|
| |
|
|
|
|
|
| |
Obtained from: Tom Yu <tlyu@mit.edu> on BUGTRAQ
Notes:
svn path=/head/; revision=110832
|
| |
|
|
|
|
|
| |
Obtained from: Tom Yu <tlyu@MIT.EDU> on kerberos-announce list
Notes:
svn path=/head/; revision=110696
|
| |
|
|
|
|
|
|
|
| |
commit fixes that error.
Reported by: bento
Notes:
svn path=/head/; revision=99136
|
| |
|
|
|
|
|
|
|
| |
2. Fix build on -STABLE.
PR: 57128
Notes:
svn path=/head/; revision=93418
|
| |
|
|
|
|
|
|
| |
PR: 56169
Submitted by: Sergey Matveychuk <sem@ciam.ru>
Notes:
svn path=/head/; revision=88877
|
| |
|
|
| |
Notes:
svn path=/head/; revision=86530
|
| |
|
|
|
|
|
| |
Submitted by: wollman
Notes:
svn path=/head/; revision=80398
|
| |
|
|
| |
Notes:
svn path=/head/; revision=80323
|
| |
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| |
- MITKRB5-SA-2003-005:
Buffer overrun and underrun in principal name handling
- MITKRB5-SA-2003-004:
Cryptographic weaknesses in Kerberos v4 protocol; KDC and realm
compromise possible.
- MITKRB5-SA-2003-003:
Faulty length checks in xdrmem_getbytes may allow kadmind DoS.
- Additional patches from RedHat.
Approved by: kris (wearing his portmgr hat)
Obtained from: MIT Website and Nalin Dahyabhai <nalin@redhat.com>
Notes:
svn path=/head/; revision=77170
|
| |
|
|
|
|
|
|
| |
Note: Since crypto-publish.org does not yet have krb5-1.2.7 up on their
website, fetch from their site has been temporarily disabled.
Notes:
svn path=/head/; revision=70211
|
| |
|
|
|
|
|
|
|
|
| |
KDC host).
Obtained from: Tom Yu <tlyu@mit.edu> on kerberos-announce mailing list,
MIT krb5 Security Advisory 2002-002
Notes:
svn path=/head/; revision=68693
|
| |
|
|
|
|
|
|
| |
Note: Since crypto-publish.org does not yet have krb5-1.2.6 up on their
website, fetch from their site has been temporarily disabled.
Notes:
svn path=/head/; revision=66260
|
| |
|
|
|
|
|
|
| |
<URL:http://online.securityfocus.com/archive/1/285308>
<URL:http://bvlive01.iss.net/issEn/delivery/xforce/alertdetail.jsp?oid=20823>
Notes:
svn path=/head/; revision=63876
|
| |
|
|
|
|
|
|
|
|
|
| |
ENOENT. Obtained from /cvs/krbdev/krb5/src/kdc/kdc_preauth.c,v rev 5.31
in MIT KRB5 tree (fix etype info; wrong termination condition used in
get_etype_info).
Obtained from: Sam Hartman <hartmans@mit.edu>
Notes:
svn path=/head/; revision=61979
|
| |
|
|
| |
Notes:
svn path=/head/; revision=53145
|
| |
|
|
|
|
|
|
|
|
|
|
|
|
| |
now makes use of login.conf and login.access. This is performed by
using FreeBSD login(1) instead of MIT KRB5 login.krb5(8).
The MIT KRB5 login.krb5(8) can still be used by specifying "-L" in
the klogind and telnetd arguments in inetd.conf. This is documented
in a new file called README.FreeBSD.
Reviewed by: nectar
Notes:
svn path=/head/; revision=52768
|
| |
|
|
|
|
|
|
|
|
|
|
|
| |
<msa@dinosauricon.com> provided the original patches.
= For users outside of the US, point to www.crypto-publish.org for the
distfiles. It was Chris Knight <chris@aims.com.au>'s idea.
Submitted by: Cy.Schubert@uumail.gov.bc.ca (MAINTAINER)
PR: ports/29865
Notes:
svn path=/head/; revision=47507
|
| |
|
|
|
|
|
| |
Submitted by: Cy Schubert <Cy.Schubert@uumail.gov.bc.ca>
Notes:
svn path=/head/; revision=45447
|
| |
|
|
|
|
|
| |
Submitted by: Cy Schubert <Cy.Schubert@uumail.gov.bc.ca>
Notes:
svn path=/head/; revision=45441
|
| |
|
|
|
|
|
| |
Submitted by: Cy Schubert <Cy.Schubert@uumail.gov.bc.ca>
Notes:
svn path=/head/; revision=45288
|
| |
|
|
|
|
|
|
|
|
|
| |
``Buffer overflows exist in the FTP daemon included with MIT krb5.''
See <URL:http://web.mit.edu/kerberos/www/advisories/ftpbuf.txt> and
<URL:http://web.mit.edu/kerberos/www/advisories/ftpbuf_122_patch.txt>.
Obtained from: MIT Kerberos mailing list
Notes:
svn path=/head/; revision=41972
|
| |
|
|
|
|
|
|
|
|
|
| |
``Buffer overflows exist in the FTP daemon included with MIT krb5.''
See <URL:http://web.mit.edu/kerberos/www/advisories/ftpbuf.txt> and
<URL:http://web.mit.edu/kerberos/www/advisories/ftpbuf_122_patch.txt>.
Obtained from: MIT Kerberos mailing list
Notes:
svn path=/head/; revision=41971
|
| |
|
|
| |
Notes:
svn path=/head/; revision=38988
|
| |
|
|
|
|
|
|
|
|
|
| |
from <paths.h> (if available) like login.krb5 does. As a result,
on FreeBSD 4.2 these two programs end up using different paths
for the nologin file (which is /var/run/nologin on FreeBSD).
Submitted by: <djm@test.pubnix.com>
Notes:
svn path=/head/; revision=37009
|