| Summary: | krb5 new security issue CVE-2015-2698 | ||
|---|---|---|---|
| Product: | Mageia | Reporter: | David Walser <luigiwalser> |
| Component: | Security | Assignee: | QA Team <qa-bugs> |
| Status: | RESOLVED FIXED | QA Contact: | Sec team <security> |
| Severity: | normal | ||
| Priority: | Normal | CC: | herman.viaene, sysadmin-bugs |
| Version: | 5 | Keywords: | validated_update |
| Target Milestone: | --- | ||
| Hardware: | i586 | ||
| OS: | Linux | ||
| URL: | http://lwn.net/Vulnerabilities/663791/ | ||
| Whiteboard: | has_procedure advisory MGA5-32-OK | ||
| Source RPM: | krb5-1.12.2-8.1.mga5.src.rpm | CVE: | |
| Status comment: | |||
|
Description
David Walser
2015-11-09 20:42:35 CET
MGA5-32 on AcerD620 Xfce No installation issues, but leaves a question: the previous version of krb5 was installed, but selecting the new version of krb does not draw in the new version of the other package. I aselected those myself, but a user not very awake could end up with krb5-8.2 and libkrb53-8.2 Is that safe and/or friendly???? Completed the test procedure as per Comment 1, OK for me. just one remark: if you're lazy as I was, and just hit <Enter> on defining the passwords, and then do the same on calling kinit, I got: Password incorrect while getting initial credentials I reran the setup, this time with real passwords and then all was OK CC:
(none) =>
herman.viaene Validating. Keywords:
(none) =>
validated_update Advisory uploaded. Whiteboard:
has_procedure MGA5-32-OK =>
has_procedure advisory MGA5-32-OK An update for this issue has been pushed to Mageia Updates repository. http://advisories.mageia.org/MGASA-2015-0446.html Status:
NEW =>
RESOLVED |