Jump to letter: [
3ABCDEFGHIJKLMNOPQRSTUVWXYZ
]
krb5-server - The KDC and related programs for Kerberos 5
- Description:
Kerberos is a network authentication system. The krb5-server package
contains the programs that must be installed on a Kerberos 5 key
distribution center (KDC). If you are installing a Kerberos 5 KDC,
you need to install this package (in other words, most people should
NOT install this package).
Packages
krb5-server-1.13.1-3.fc22.i686
[914 KiB] |
Changelog
by Roland Mainz (2015-05-04):
- fix for CVE-2015-2694 (#1216133) "requires_preauth bypass
in PKINIT-enabled KDC".
In MIT krb5 1.12 and later, when the KDC is configured with
PKINIT support, an unauthenticated remote attacker can
bypass the requires_preauth flag on a client principal and
obtain a ciphertext encrypted in the principal's long-term
key. This ciphertext could be used to conduct an off-line
dictionary attack against the user's password.
|