krb5-1.21.1 and krb5-1.20.2 are released
Greg Hudson
ghudson at mit.edu
Tue Jul 18 13:22:57 EDT 2023
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512
The MIT Kerberos Team announces the availability of MIT Kerberos 5
Releases 1.21.1 and 1.20.2. Please see below for a list of some major
changes included, or consult the README file in the source tree for a
more detailed list of significant changes.
Retrieving krb5-1.21.1 and krb5-1.20.2
======================================
You may retrieve the krb5-1.21.1 and krb5-1.20.2 sources from the
following URL:
https://kerberos.org/dist/
The homepages for the krb5-1.21.1 and krb5-1.20.2 releases are:
https://web.mit.edu/kerberos/krb5-1.21/
https://web.mit.edu/kerberos/krb5-1.20/
Further information about Kerberos 5 may be found at the following
URL:
https://web.mit.edu/kerberos/
Major changes in 1.21.1 (2023-07-10) and 1.20.2 (2023-07-06)
============================================================
These are bug fix releases.
* Fix potential uninitialized pointer free in kadm5 XDR parsing
[CVE-2023-36054].
* Fix read overruns in SPNEGO parsing (already included in 1.21).
* Compatibility fix for autoconf 2.72 (already included in 1.21).
-----BEGIN PGP SIGNATURE-----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=qJTF
-----END PGP SIGNATURE-----
More information about the kerberos-announce
mailing list