Script 'mail_helper' called by obssrc Hello community, here is the log from the commit of package krb5 for openSUSE:Factory checked in at 2022-11-18 15:42:33 ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Comparing /work/SRC/openSUSE:Factory/krb5 (Old) and /work/SRC/openSUSE:Factory/.krb5.new.1597 (New) ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Package is "krb5" Fri Nov 18 15:42:33 2022 rev:161 rq:1036481 version:1.20.1 Changes: -------- --- /work/SRC/openSUSE:Factory/krb5/krb5-mini.changes 2022-06-18 22:05:56.287634652 +0200 +++ /work/SRC/openSUSE:Factory/.krb5.new.1597/krb5-mini.changes 2022-11-18 15:42:35.270312911 +0100 @@ -1,0 +2,9 @@ +Wed Nov 16 07:49:09 UTC 2022 - Samuel Cabrero <scabr...@suse.de> + +- Update to 1.20.1; (bsc#1205126); (CVE-2022-42898); + * Fix integer overflows in PAC parsing [CVE-2022-42898]. + * Fix null deref in KDC when decoding invalid NDR. + * Fix memory leak in OTP kdcpreauth module. + * Fix PKCS11 module path search. + +------------------------------------------------------------------- krb5.changes: same change Old: ---- krb5-1.20.tar.gz krb5-1.20.tar.gz.asc New: ---- krb5-1.20.1.tar.gz krb5-1.20.1.tar.gz.asc ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Other differences: ------------------ ++++++ krb5-mini.spec ++++++ --- /var/tmp/diff_new_pack.DxEkro/_old 2022-11-18 15:42:37.562322980 +0100 +++ /var/tmp/diff_new_pack.DxEkro/_new 2022-11-18 15:42:37.578323051 +0100 @@ -24,7 +24,7 @@ %define _fillupdir %{_localstatedir}/adm/fillup-templates %endif Name: krb5-mini -Version: 1.20 +Version: 1.20.1 Release: 0 Summary: MIT Kerberos5 implementation and libraries with minimal dependencies License: MIT krb5.spec: same change ++++++ krb5-1.20.tar.gz -> krb5-1.20.1.tar.gz ++++++ /work/SRC/openSUSE:Factory/krb5/krb5-1.20.tar.gz /work/SRC/openSUSE:Factory/.krb5.new.1597/krb5-1.20.1.tar.gz differ: char 5, line 1