Novell

This is Your Open EnterpriseTM

NKDC 20090409

(476b4ad22cc0774296a57c5afafb3b3b)

This document (5047180) is provided subject to the disclaimer at the end of this document.

patches this patch supersedes

This patch does not supersede any other patches.

patches that supersede this patch

This patch is not superseded by any other patches.

patch attributes

Architecture: x86
Security patch: YesView security alerts.
Priority: Mandatory
Distribution Type: Public

document

Revision: 1
Document ID: 5047180
Creation Date: 2009-04-14 18:20:05

abstract

NKDC
SuSE Linux Maintenance Web (476b4ad22cc0774296a57c5afafb3b3b)

Applies to

Package: novell-kerberos-admin-server novell-kerberos-authentication novell-kerberos-base novell-kerberos-kdc novell-kerberos-ldap-extensions novell-kerberos-password-agent novell-kerberos-password-server novell-kerberos-server-base novell-kerberos-utilities
Product(s):
Novell Open Enterprise Server 2 for x86
Novell Open Enterprise Server 2 for AMD64 and Intel EM64T
Patch: oes2-novell-kerberos-admin-server-6150

Release: 20090409
Obsoletes: none

details

Indications

All users of Novell Kerberos KDC should update.

Contraindications

Problem description

Fixed the following security vulnerabilities disclosed by MIT :
  • MITKRB5-SA-2009-002 - ASN.1 decoder frees uninitialized pointer
  • MITKRB5-SA-2009-001 - multiple vulnerabilities in SPNEGO, ASN.1 decoder

Solution

Please install the updates provided at the location noted below.

Installation notes

This update is provided as an RPM package that can easily be installed onto a running system by using this command:

rpm -Fvh novell-kerberos-admin-server, novell-kerberos-authentication, novell-kerberos-base, novell-kerberos-kdc, novell-kerberos-ldap-extensions, novell-kerberos-password-agent, novell-kerberos-password-server, novell-kerberos-server-base, novell-kerberos-utilities

file contents

Files IncludedSizeDate
novell-kerberos-admin-server-1.5-32.4.i586.rpm30.8 KB (31578)2009-04-14 18:20:09
novell-kerberos-authentication-1.5-32.4.i586.rpm18.0 KB (18500)2009-04-14 18:20:10
novell-kerberos-base-1.5-32.4.i586.rpm258.5 KB (264773)2009-04-14 18:20:10
novell-kerberos-kdc-1.5-32.4.i586.rpm42.3 KB (43320)2009-04-14 18:20:11
novell-kerberos-ldap-extensions-1.5-32.4.i586.rpm25.7 KB (26328)2009-04-14 18:20:11
novell-kerberos-password-agent-1.5-32.4.i586.rpm25.2 KB (25821)2009-04-14 18:20:12
novell-kerberos-password-server-1.5-32.4.i586.rpm21.2 KB (21736)2009-04-14 18:20:12
novell-kerberos-server-base-1.5-32.4.i586.rpm269.4 KB (275935)2009-04-14 18:20:13
novell-kerberos-utilities-1.5-32.4.i586.rpm111.6 KB (114354)2009-04-14 18:20:13
readme_5047180.htmlN/A2009-04-14 18:20:43

source packages

Download the source code of the patches for maintained products.

disclaimer

The Origin of this information may be internal or external to Novell. Novell makes all reasonable efforts to verify this information. However, the information provided in this document is for your information only. Novell makes no explicit or implied claims to the validity of this information. Any trademarks referenced in this document are the property of their respective owners. Consult your product manuals for complete trademark information.

Novell is a registered trademark of Novell, Inc. in the United States and other countries. SUSE is a registered trademark of SUSE Linux AG, a Novell business. *All third-party trademarks are the property of their respective owners.

© 2007 Novell, Inc. All Rights Reserved.