branches with status:
Name Status Last Modified Last Commit
lp:~hartmans/moonshot/mech_eap-debian-dep-fix 1 Development 2015-04-08 16:51:14 UTC
54. Fix conflicts in dependency branch.

Author: Sam Hartman
Revision Date: 2015-04-08 16:51:14 UTC

Fix conflicts in dependency branch.

lp:~hartmans/ubuntu/trusty/krb5/gss-infinite-loop bug 1 Development 2014-12-03 07:04:01 UTC
63. * SECURITY UPDATE: denial of service ...

Author: Sam Hartman
Revision Date: 2014-08-12 11:31:13 UTC

* SECURITY UPDATE: denial of service via invalid tokens
  - debian/patches/CVE-2014-4341-4342.patch: handle invalid tokens in
    src/lib/gssapi/krb5/k5unseal.c, src/lib/gssapi/krb5/k5unsealiov.c.
  - CVE-2014-4341
  - CVE-2014-4342
* SECURITY UPDATE: denial of service via double-free in SPNEGO
  - debian/patches/CVE-2014-4343.patch: fix double-free in
    src/lib/gssapi/spnego/spnego_mech.c.
  - CVE-2014-4343
* SECURITY UPDATE: denial of service via null deref in SPNEGO acceptor
  - debian/patches/CVE-2014-4344.patch: validate REMAIN in
    src/lib/gssapi/spnego/spnego_mech.c.
  - CVE-2014-4344
* SECURITY UPDATE: denial of service and possible code execution in
  kadmind with LDAP backend
  - debian/patches/CVE-2014-4345.patch: fix off-by-one in
    src/plugins/kdb/ldap/libkdb_ldap/ldap_principal2.c
  - CVE-2014-4345

lp:~hartmans/ubuntu/precise/krb5/gss-unload2 bug 1 Development 2013-10-05 10:46:49 UTC
50. Never unload gss-api mechanisms to av...

Author: Sam Hartman
Revision Date: 2013-10-05 10:37:40 UTC

Never unload gss-api mechanisms to avoid crash at process exit.

lp:~hartmans/ubuntu/precise/krb5/gss-unload 1 Development 2013-10-05 10:30:49 UTC This branch has not been pushed to yet.
lp:~hartmans/kerberos/debian 1 Development 2013-05-15 00:58:57 UTC
47. Fix UDP ping-pong in kpasswd server [...

Author: Sam Hartman
Revision Date: 2013-05-15 00:58:57 UTC

Fix UDP ping-pong in kpasswd server [CVE-2002-2443], Closes: #708267

lp:~hartmans/kerberos/trunk 1 Development 2012-05-11 18:07:30 UTC
17027. Omit start time in common AS requests...

Author: ghudson
Revision Date: 2012-05-11 18:07:30 UTC

Omit start time in common AS requests

MIT and Heimdal KDCs ignore the start time for non-postdated ticket
requests, but AD yields an error if the start time is in the KDC's
future, defeating the kdc_timesync option. Omit the start time if the
caller did not specify a start time offset.

This change reenables the client check for too much clock skew in the
KDC reply in the non-timesync configuration. That check had been
unintentionally suppressed since the introduction of the
get_init_creds interfaces. Adjust the t_skew test script to expect
the new error behavior.

Code changes from stefw@gnome.org with slight modifications.

ticket: 7130

git-svn-id: svn://anonsvn.mit.edu/krb5/trunk@25864 dc483132-0cff-0310-8789-dd5450dbe970

lp:~hartmans/kerberos/trunk-packaging 1 Development 2012-01-15 20:21:01 UTC
16824. Import a merged doc directory includi...

Author: Sam Hartman
Revision Date: 2012-01-15 20:21:01 UTC

Import a merged doc directory including the debian master branch merged with upstream trunk. This replaces an incorrectly grabbed directory from upstream trunk without any built docs

lp:~hartmans/+junk/krb5-debian 1 Development 2011-12-10 06:14:23 UTC This branch is empty.
18 of 8 results