Lucene search

K
oraclelinuxOracleELSA-2007-0795
HistorySep 04, 2007 - 12:00 a.m.

Moderate: cyrus-sasl security and bug fix update

2007-09-0400:00:00
Oracle
linux.oracle.com
11

0.073 Low

EPSS

Percentile

94.1%

[2.1.19-14]

  • Related: bz250732 Fixed a conflict with an earlier test patch

[2.1.19-13]

  • Related: bz250732 Fixed uninitialized stack variable causing segfault

[2.1.19-12]

  • Resolves: bz250732 sasl-sample-server crashes with null realm

[2.1.19-11]

  • Resolves: bz243910 krb5-libs are not thread-safe
  • Resolves: bz244075 Memory leaks in digest-md5 plugin
  • Added missing build dependency for groff to spec file

[2.1.19-10]

  • reapply fixes for #157012, #190113

[2.1.19-9]

  • temporarily back out the fixes for #157012, #190113

[2.1.19-8]

  • add unapplied patches which make the DIGEST-MD5 plugins omit the realm
    argument when the environment has
    set to a
    non-zero value, for testing purposes
  • add missing build dependency on zlib-devel (#190113)

[2.1.19-7]

  • make v1 of the sasl library use /dev/urandom instead of /dev/random, as
    we do in v2 of the library at compile-time (#157012)

[2.1.19-6]

  • backport fix for segfault in the digest-md5 module in cases when the
    client didn’t supply a realm (#189814, CVE-2006-1721)