Accepted krb5 1.20.1-1 (source) into unstable
- To: debian-devel-changes@lists.debian.org
- Subject: Accepted krb5 1.20.1-1 (source) into unstable
- From: Debian FTP Masters <ftpmaster@ftp-master.debian.org>
- Date: Thu, 17 Nov 2022 18:34:36 +0000
- Debian: DAK
- Debian-architecture: source
- Debian-archive-action: accept
- Debian-changes: krb5_1.20.1-1_source.changes
- Debian-source: krb5
- Debian-suite: unstable
- Debian-version: 1.20.1-1
- Dkim-signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; d=ftp-master.debian.org; s=smtpauto.fasolo; h=Date:Message-Id: Content-Transfer-Encoding:Content-Type:Subject:MIME-Version:To:Reply-To:From: Cc:Content-ID:Content-Description:In-Reply-To:References; bh=f6ju/NI5nLa2OG40HgqsrMFGLsjMyExDN9i5I753aU8=; b=OvuebHNtyYZPUKGogqZrQSAsS9 lQYQrD0k8tB9Fia85xHth4VNozgB2bB0yNtTIPI1yCdd9lo9zlTv6PNOYWe0E0Zc0q34U5S5E201R h5Hk2xfLxiGDrAaprYRyv1XAaHWxZLFOyd6Sq0ra5IYkAclw9M6A71IDso3uCc1QnMX5kCzmnjtGM plczi+N8jDNnJxS1Eitd2zjyhzGPMn8jMe9WWhiiU//I2t4abiy4icx9JQ/8clGnojzDxkXmSlsha UFY6vnjoxn440yXpuH/Pqf8QfZF3cxm37nhaqFuwdayOdYkhWqZjrYvO3cCcABDDitRJ0saiOH7ZN 4pYy/1Sw==;
- Mail-followup-to: debian-devel@lists.debian.org
- Message-id: <E1ovjie-00A7G0-Uj@fasolo.debian.org>
- Reply-to: debian-devel@lists.debian.org
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256
Format: 1.8
Date: Thu, 17 Nov 2022 10:34:28 -0700
Source: krb5
Architecture: source
Version: 1.20.1-1
Distribution: unstable
Urgency: high
Maintainer: Sam Hartman <hartmans@debian.org>
Changed-By: Sam Hartman <hartmans@debian.org>
Closes: 1005821 1020424 1024267
Changes:
krb5 (1.20.1-1) unstable; urgency=high
.
[ Bastian Germann ]
* Sync debian/copyright with NOTICE from upstream
.
[ Debian Janitor ]
* Trim trailing whitespace.
* Strip unusual field spacing from debian/control.
* Use secure URI in Homepage field.
* Merge upstream signing key files.
* Update renamed lintian tag names in lintian overrides.
* Update standards version to 4.6.1, no changes needed.
* Remove field Section on binary package krb5-gss-samples that
duplicates source.
* Fix field name cases in debian/control (VCS-Browser => Vcs-Browser,
VCS-Git => Vcs-Git).
.
[ Sam Hartman ]
* New upstream release
- Integer overflows in PAC parsing; potentially critical for 32-bit
KDCs or when cross-realm acts maliciously; DOS in other conditions;
CVE-2022-42898, Closes: #1024267
* Tighten version dependencies around crypto library, Closes: 1020424
* krb5-user reccomends rather than Depends on krb5-config. This avoids
a hard dependency on bind9-host, but also supports cases where
krb5-config is externally managed, Closes: #1005821
Checksums-Sha1:
c8d502aaaf41a18763c55fb8412a129f93b68694 3168 krb5_1.20.1-1.dsc
06278439a6cd5a2aa861d8e877451b794487534b 8661660 krb5_1.20.1.orig.tar.gz
1cd01998135e3db3c4401b84459fb19ab8baabaf 833 krb5_1.20.1.orig.tar.gz.asc
73d996e0606504dd2796e7d7814adeb5155a4368 99428 krb5_1.20.1-1.debian.tar.xz
31ca0c510d7518f12d7606d4218cb6ad834087de 5267 krb5_1.20.1-1_source.buildinfo
Checksums-Sha256:
dca082e1aac1ae5f7622b524942a305ad7c93e584f3a67db02f48542eb5b415a 3168 krb5_1.20.1-1.dsc
704aed49b19eb5a7178b34b2873620ec299db08752d6a8574f95d41879ab8851 8661660 krb5_1.20.1.orig.tar.gz
2afeec5dbc586cc40b7975645e02b4c41c4d719dd02213e828c72d8239d55666 833 krb5_1.20.1.orig.tar.gz.asc
19c5f3e66ee1c22f05d86e1ec521e08f885105db4d42403593db6e6db38fad13 99428 krb5_1.20.1-1.debian.tar.xz
0248c4d3cc20e26b43a55046c0775021d3b3aaf66dcb4ece63f8e3bae19b7c13 5267 krb5_1.20.1-1_source.buildinfo
Files:
59822e3c6a484479f11e644752bfc6e3 3168 net optional krb5_1.20.1-1.dsc
73f5780e7b587ccd8b8cfc10c965a686 8661660 net optional krb5_1.20.1.orig.tar.gz
46551f0a032aa02dccac3789a344e028 833 net optional krb5_1.20.1.orig.tar.gz.asc
0070fac8c64aa9328d1cc321c5854b7e 99428 net optional krb5_1.20.1-1.debian.tar.xz
ec021b7c59ea71b50898ab766240434b 5267 net optional krb5_1.20.1-1_source.buildinfo
-----BEGIN PGP SIGNATURE-----
iHUEARYIAB0WIQSj2jRwbAdKzGY/4uAsbEw8qDeGdAUCY3Z7ogAKCRAsbEw8qDeG
dMhmAP94HIbZYTXwSOV4qTihJiGFLotbOTpw9TFH+yQt9/K7sQEAm7CNMcGUs8Yj
IYU4KBv8lUm7RfI4st4kmqcdEKq2UQw=
=EVtB
-----END PGP SIGNATURE-----