[Bug 224191] [patch] security/heimdal: update to 7.5.0 (security update, fixes remote DoS)

bugzilla-noreply at freebsd.org bugzilla-noreply at freebsd.org
Fri Dec 8 23:29:02 UTC 2017


https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=224191

            Bug ID: 224191
           Summary: [patch] security/heimdal: update to 7.5.0 (security
                    update, fixes remote DoS)
           Product: Ports & Packages
           Version: Latest
          Hardware: Any
                OS: Any
            Status: New
          Keywords: patch
          Severity: Affects Many People
          Priority: ---
         Component: Individual Port(s)
          Assignee: hrs at FreeBSD.org
          Reporter: vidar at karlsen.tech
          Assignee: hrs at FreeBSD.org
             Flags: maintainer-feedback?(hrs at FreeBSD.org)
          Keywords: patch

Created attachment 188636
  --> https://bugs.freebsd.org/bugzilla/attachment.cgi?id=188636&action=edit
Proposed patch

Builds fine on 11.1-RELEASE (poudriere testport).
Portlint throws some warnings but they were there before also.
Fixed a space-instead-of-tab while I was editing the Makefile.

Snipped from release notes:

This is a security release of Heimdal

This release patches a remote denial of service

CVE-2017-17439: In Heimdal 7.1 through 7.4, remote unauthenticated attackers
are able to crash the KDC by sending a crafted UDP packet containing empty data
fields for client name or realm.

-- 
You are receiving this mail because:
You are the assignee for the bug.


More information about the freebsd-ports-bugs mailing list