[Heimdal-source-changes] [heimdal/heimdal] 33ad85: CVE-2019-14870: Always lookup impersonate client i...

Isaac Boukris noreply at github.com
Tis Dec 10 11:25:22 CET 2019


  Branch: refs/heads/heimdal-7-1-branch
  Home:   https://github.com/heimdal/heimdal
  Commit: 33ad855814912242e884125eb48bd65e92877938
      https://github.com/heimdal/heimdal/commit/33ad855814912242e884125eb48bd65e92877938
  Author: Isaac Boukris <iboukris at gmail.com>
  Date:   2019-12-10 (Tue, 10 Dec 2019)

  Changed paths:
    M kdc/krb5tgs.c
    M tests/kdc/check-kdc.in

  Log Message:
  -----------
  CVE-2019-14870: Always lookup impersonate client in DB

Signed-off-by: Isaac Boukris <iboukris at gmail.com>


  Commit: 6eceb26a5fbe2e770f3df16b50a54b803cb5994e
      https://github.com/heimdal/heimdal/commit/6eceb26a5fbe2e770f3df16b50a54b803cb5994e
  Author: Isaac Boukris <iboukris at gmail.com>
  Date:   2019-12-10 (Tue, 10 Dec 2019)

  Changed paths:
    M kdc/krb5tgs.c
    M tests/kdc/check-kdc.in

  Log Message:
  -----------
  CVE-2019-14870: Apply forwardable policy in protocol-transition

Signed-off-by: Isaac Boukris <iboukris at gmail.com>


  Commit: 26dce4a1143b4330360c089156e53cc6be01e3dc
      https://github.com/heimdal/heimdal/commit/26dce4a1143b4330360c089156e53cc6be01e3dc
  Author: Isaac Boukris <iboukris at gmail.com>
  Date:   2019-12-10 (Tue, 10 Dec 2019)

  Changed paths:
    M kdc/krb5tgs.c
    M tests/kdc/check-kdc.in

  Log Message:
  -----------
  CVE-2019-14870: Validate client attributes in protocol-transition

Signed-off-by: Isaac Boukris <iboukris at gmail.com>


Compare: https://github.com/heimdal/heimdal/compare/f000d7032243...26dce4a1143b


More information about the Heimdal-source-changes mailing list