MITKRB5-SA-2003-001: Multiple vulnerabilities in old releases of MIT Kerberos

Sam Hartman hartmans at MIT.EDU
Wed Jan 29 14:51:57 EST 2003


>>>>> "Andreas" == Andreas Hasenack <andreas at conectiva.com.br> writes:

    Andreas> Em Wed, Jan 29, 2003 at 02:05:02PM -0200, Andreas
    Andreas> Hasenack escreveu:
    >> > Thankfully, other people are allowed to file the export
    >> paperwork even if > MIT can't/won't.
    >> 
    >> Thanks, I appreciate this, I really do.
    >> 
    >> Now, can MIT perhaps post at least the detached signature for
    >> that tarball? Or is that under export control too?

    Andreas> Never mind, I just saw that the last signature file for
    Andreas> kerberos available at MIT is for the 1.2.2 release.

No, actually when I go to the MIT website, click on 1.2 release, a bit
down the page I find a note that the 1.2.7 detached signature is
available without going through the download page.

Please see:
http://web.mit.edu/kerberos/www/krb5-1.2/krb5-1.2.7.sig



More information about the Kerberos mailing list