Name: | libkadm5 |
---|---|
Version: | 1.21.1 |
Release: | 8.0.1.el9_6 |
Architecture: | i686 |
Group: | Unspecified |
Size: | 225514 |
License: | MIT |
RPM: | libkadm5-1.21.1-8.0.1.el9_6.i686.rpm |
Source RPM: | krb5-1.21.1-8.0.1.el9_6.src.rpm |
Build Date: | Tue Jun 24 2025 |
Build Host: | build-ol9-i386.oracle.com |
Vendor: | Oracle America |
URL: | https://web.mit.edu/kerberos/www/ |
Summary: | Kerberos 5 Administrative libraries |
Description: | Kerberos is a network authentication system. The libkadm5 package contains only the libkadm5clnt and libkadm5serv shared objects. This interface is not considered stable. |
- Fixed race condition in krb5_set_password() [Orabug: 33609767]
- Do not block HMAC-MD4/5 in FIPS mode Resolves: RHEL-88704 - Don't issue RC4 session keys by default (CVE-2025-3576) Resolves: RHEL-88048 - Add PKINIT paChecksum2 from MS-PKCA v20230920 Resolves: RHEL-82647
- Add dedicated tests sub-package
- Prevent overflow when calculating ulog block size (CVE-2025-24528) Resolves: RHEL-76759
- Support PKCS11 EC client certs in PKINIT Resolves: RHEL-74374 - kdb5_util: fix DB entry flags on modification Resolves: RHEL-56059 - Add ECDH support for PKINIT (RFC5349) Resolves: RHEL-4902
- libkrad: implement support for Message-Authenticator (CVE-2024-3596) Resolves: RHEL-55423 - Fix various issues detected by static analysis Resolves: RHEL-58216 - Remove RSA protocol for PKINIT Resolves: RHEL-15323
- CVE-2024-37370 CVE-2024-37371 Fix vulnerabilities in GSS message token handling Resolves: RHEL-45402 RHEL-45392
- Fix memory leak in GSSAPI interface Resolves: RHEL-27251 - Fix memory leak in PMAP RPC interface Resolves: RHEL-27245 - Fix memory leak in failing UTF-8 to UTF-16 re-encoding for PAC Resolves: RHEL-27253 - Make TCP waiting time configurable Resolves: RHEL-17132
- New upstream version (1.21.1) - Fix double-free in KDC TGS processing (CVE-2023-39975) - Add support for "pac_privsvr_enctype" KDB string attribute Resolves: rhbz#2060421