[Heimdal-source-changes] [heimdal/heimdal] 51415e: CVE-2019-14870: Always lookup impersonate client i...

Isaac Boukris noreply at github.com
Tis Dec 10 11:24:06 CET 2019


  Branch: refs/heads/master
  Home:   https://github.com/heimdal/heimdal
  Commit: 51415eaaaeab0bd776e6e756fa209127e1c6954b
      https://github.com/heimdal/heimdal/commit/51415eaaaeab0bd776e6e756fa209127e1c6954b
  Author: Isaac Boukris <iboukris at gmail.com>
  Date:   2019-12-10 (Tue, 10 Dec 2019)

  Changed paths:
    M kdc/krb5tgs.c
    M tests/kdc/check-kdc.in

  Log Message:
  -----------
  CVE-2019-14870: Always lookup impersonate client in DB

Signed-off-by: Isaac Boukris <iboukris at gmail.com>


  Commit: 013210d1eb5b915ec94446e1d9a998d0dbedd253
      https://github.com/heimdal/heimdal/commit/013210d1eb5b915ec94446e1d9a998d0dbedd253
  Author: Isaac Boukris <iboukris at gmail.com>
  Date:   2019-12-10 (Tue, 10 Dec 2019)

  Changed paths:
    M kdc/krb5tgs.c
    M tests/kdc/check-kdc.in

  Log Message:
  -----------
  CVE-2019-14870: Apply forwardable policy in protocol-transition

Signed-off-by: Isaac Boukris <iboukris at gmail.com>


  Commit: 77b480d2a07f51ffdec825f700949cffef5163f6
      https://github.com/heimdal/heimdal/commit/77b480d2a07f51ffdec825f700949cffef5163f6
  Author: Isaac Boukris <iboukris at gmail.com>
  Date:   2019-12-10 (Tue, 10 Dec 2019)

  Changed paths:
    M kdc/krb5tgs.c
    M tests/kdc/check-kdc.in

  Log Message:
  -----------
  CVE-2019-14870: Validate client attributes in protocol-transition

Signed-off-by: Isaac Boukris <iboukris at gmail.com>


Compare: https://github.com/heimdal/heimdal/compare/733140553a2c...77b480d2a07f


More information about the Heimdal-source-changes mailing list