Privacy and Legal Notice

DOE-CIRC TECHNICAL BULLETIN

T-174: MIT Kerberos 'asn1_decode_generaltime()' Uninitialized Pointer Memory Corruption Vulnerability

[CVE-2009-0846]

July 1, 2009 14:00 GMT

PROBLEM: MIT Kerberos fails to handle an error condition which allows for memory corruption.
PLATFORM: Versions prior to Kerberos 5.17 and 5.1.6.4 are vulnerable.
ABSTRACT: MIT Kerberos is prone to a memory-corruption vulnerability because it fails to properly initialize data structures.

LINKS:  
  DOE-CIRC BULLETIN: http://www.doecirc.energy.gov/bulletins/t-174.shtml
  OTHER LINKS: Security Focus Website
http://www.securityfocus.com/bid/34409


  CVE: CVE-2009-0846

IMPACT ASSESSMENT: The risk is medium. Remote attackers could cause a denial of service or possibly execute arbitrary code via vectors involving an invalid DER encoding that triggers a free of an uninitialized pointer.

[***** Start CVE-2009-0846 *****]
Discussion:
The asn1_decode_generaltime function in lib/krb5/asn.1/asn1_decode.c in the ASN.1 GeneralizedTime decoder in MIT Kerberos 5 (aka krb5) before 1.6.4 allows remote attackers to cause a denial of service (daemon crash) or possibly execute arbitrary code via vectors involving an invalid DER encoding that triggers a free of an uninitialized pointer.

uccessful exploits may allow remote attackers to crash Kerberos servers, including the 'kadmind' administration daemon. Given the nature of this issue, attackers may also be able to execute arbitrary code with SYSTEM-level or superuser privileges, but this has not been confirmed.

Currently we are not aware of any working exploits.

Updates are available. Please see below for more information.

Ubuntu Ubuntu Linux 7.10 powerpc

    * Ubuntu krb5-admin-server_1.6.dfsg.1-7ubuntu0.2_powerpc.deb
      http://security.ubuntu.com/ubuntu/pool/universe/k/krb5/krb5-admin-serv er_1.6.dfsg.1-7ubuntu0.2_powerpc.deb

    * Ubuntu krb5-clients_1.6.dfsg.1-7ubuntu0.2_powerpc.deb
      http://security.ubuntu.com/ubuntu/pool/universe/k/krb5/krb5-clients_1. 6.dfsg.1-7ubuntu0.2_powerpc.deb

    * Ubuntu krb5-doc_1.6.dfsg.1-7ubuntu0.2_all.deb
      http://security.ubuntu.com/ubuntu/pool/main/k/krb5/krb5-doc_1.6.dfsg.1 -7ubuntu0.2_all.deb

    * Ubuntu krb5-ftpd_1.6.dfsg.1-7ubuntu0.2_powerpc.deb
      http://security.ubuntu.com/ubuntu/pool/universe/k/krb5/krb5-ftpd_1.6.d fsg.1-7ubuntu0.2_powerpc.deb

    * Ubuntu krb5-kdc_1.6.dfsg.1-7ubuntu0.2_powerpc.deb
      http://security.ubuntu.com/ubuntu/pool/universe/k/krb5/krb5-kdc_1.6.df sg.1-7ubuntu0.2_powerpc.deb

    * Ubuntu krb5-rsh-server_1.6.dfsg.1-7ubuntu0.2_powerpc.deb
      http://security.ubuntu.com/ubuntu/pool/universe/k/krb5/krb5-rsh-server _1.6.dfsg.1-7ubuntu0.2_powerpc.deb

    * Ubuntu krb5-telnetd_1.6.dfsg.1-7ubuntu0.2_powerpc.deb
      http://security.ubuntu.com/ubuntu/pool/universe/k/krb5/krb5-telnetd_1. 6.dfsg.1-7ubuntu0.2_powerpc.deb

    * Ubuntu krb5-user_1.6.dfsg.1-7ubuntu0.2_powerpc.deb
      http://security.ubuntu.com/ubuntu/pool/universe/k/krb5/krb5-user_1.6.d fsg.1-7ubuntu0.2_powerpc.deb

    * Ubuntu libkadm55_1.6.dfsg.1-7ubuntu0.2_powerpc.deb
      http://security.ubuntu.com/ubuntu/pool/main/k/krb5/libkadm55_1.6.dfsg. 1-7ubuntu0.2_powerpc.deb

    * Ubuntu libkrb5-dbg_1.6.dfsg.1-7ubuntu0.2_powerpc.deb
      http://security.ubuntu.com/ubuntu/pool/main/k/krb5/libkrb5-dbg_1.6.dfs g.1-7ubuntu0.2_powerpc.deb

    * Ubuntu libkrb5-dev_1.6.dfsg.1-7ubuntu0.2_powerpc.deb
      http://security.ubuntu.com/ubuntu/pool/main/k/krb5/libkrb5-dev_1.6.dfs g.1-7ubuntu0.2_powerpc.deb

    * Ubuntu libkrb53_1.6.dfsg.1-7ubuntu0.2_powerpc.deb
      http://security.ubuntu.com/ubuntu/pool/main/k/krb5/libkrb53_1.6.dfsg.1 -7ubuntu0.2_powerpc.deb


Ubuntu Ubuntu Linux 8.10 powerpc

    * Ubuntu krb5-admin-server_1.6.dfsg.4~beta1-3ubuntu0.1_powerpc.deb
      http://ports.ubuntu.com/pool/universe/k/krb5/krb5-admin-server_1.6.dfs g.4~beta1-3ubuntu0.1_powerpc.deb

    * Ubuntu krb5-clients_1.6.dfsg.4~beta1-3ubuntu0.1_powerpc.deb
      http://ports.ubuntu.com/pool/universe/k/krb5/krb5-clients_1.6.dfsg.4~b eta1-3ubuntu0.1_powerpc.deb

    * Ubuntu krb5-doc_1.6.dfsg.4~beta1-3ubuntu0.1_all.deb
      http://security.ubuntu.com/ubuntu/pool/main/k/krb5/krb5-doc_1.6.dfsg.4 ~beta1-3ubuntu0.1_all.deb

    * Ubuntu krb5-ftpd_1.6.dfsg.4~beta1-3ubuntu0.1_powerpc.deb
      http://ports.ubuntu.com/pool/universe/k/krb5/krb5-ftpd_1.6.dfsg.4~beta 1-3ubuntu0.1_powerpc.deb

    * Ubuntu krb5-kdc-ldap_1.6.dfsg.4~beta1-3ubuntu0.1_powerpc.deb
      http://ports.ubuntu.com/pool/universe/k/krb5/krb5-kdc-ldap_1.6.dfsg.4~ beta1-3ubuntu0.1_powerpc.deb

    * Ubuntu krb5-kdc_1.6.dfsg.4~beta1-3ubuntu0.1_powerpc.deb
      http://ports.ubuntu.com/pool/universe/k/krb5/krb5-kdc_1.6.dfsg.4~beta1 -3ubuntu0.1_powerpc.deb

    * Ubuntu krb5-pkinit_1.6.dfsg.4~beta1-3ubuntu0.1_powerpc.deb
      http://ports.ubuntu.com/pool/universe/k/krb5/krb5-pkinit_1.6.dfsg.4~be ta1-3ubuntu0.1_powerpc.deb

    * Ubuntu krb5-rsh-server_1.6.dfsg.4~beta1-3ubuntu0.1_powerpc.deb
      http://ports.ubuntu.com/pool/universe/k/krb5/krb5-rsh-server_1.6.dfsg. 4~beta1-3ubuntu0.1_powerpc.deb

    * Ubuntu krb5-telnetd_1.6.dfsg.4~beta1-3ubuntu0.1_powerpc.deb
      http://ports.ubuntu.com/pool/universe/k/krb5/krb5-telnetd_1.6.dfsg.4~b eta1-3ubuntu0.1_powerpc.deb

    * Ubuntu krb5-user_1.6.dfsg.4~beta1-3ubuntu0.1_powerpc.deb
      http://ports.ubuntu.com/pool/main/k/krb5/krb5-user_1.6.dfsg.4~beta1-3u buntu0.1_powerpc.deb

    * Ubuntu libkadm55_1.6.dfsg.4~beta1-3ubuntu0.1_powerpc.deb
      http://ports.ubuntu.com/pool/main/k/krb5/libkadm55_1.6.dfsg.4~beta1-3u buntu0.1_powerpc.deb

    * Ubuntu libkrb5-dbg_1.6.dfsg.4~beta1-3ubuntu0.1_powerpc.deb
      http://ports.ubuntu.com/pool/main/k/krb5/libkrb5-dbg_1.6.dfsg.4~beta1- 3ubuntu0.1_powerpc.deb

    * Ubuntu libkrb5-dev_1.6.dfsg.4~beta1-3ubuntu0.1_powerpc.deb
      http://ports.ubuntu.com/pool/main/k/krb5/libkrb5-dev_1.6.dfsg.4~beta1- 3ubuntu0.1_powerpc.deb

    * Ubuntu libkrb53_1.6.dfsg.4~beta1-3ubuntu0.1_powerpc.deb
      http://ports.ubuntu.com/pool/main/k/krb5/libkrb53_1.6.dfsg.4~beta1-3ub untu0.1_powerpc.deb


Debian Linux 5.0 alpha

    * Debian krb5-admin-server_1.6.dfsg.4~beta1-5lenny1_alpha.deb
      http://security.debian.org/pool/updates/main/k/krb5/krb5-admin-server_ 1.6.dfsg.4~beta1-5lenny1_alpha.deb

    * Debian krb5-clients_1.6.dfsg.4~beta1-5lenny1_alpha.deb
      http://security.debian.org/pool/updates/main/k/krb5/krb5-clients_1.6.d fsg.4~beta1-5lenny1_alpha.deb

    * Debian krb5-doc_1.6.dfsg.4~beta1-5lenny1_all.deb
      http://security.debian.org/pool/updates/main/k/krb5/krb5-doc_1.6.dfsg. 4~beta1-5lenny1_all.deb

    * Debian krb5-ftpd_1.6.dfsg.4~beta1-5lenny1_alpha.deb
      http://security.debian.org/pool/updates/main/k/krb5/krb5-ftpd_1.6.dfsg .4~beta1-5lenny1_alpha.deb

    * Debian krb5-kdc-ldap_1.6.dfsg.4~beta1-5lenny1_alpha.deb
      http://security.debian.org/pool/updates/main/k/krb5/krb5-kdc-ldap_1.6. dfsg.4~beta1-5lenny1_alpha.deb

    * Debian krb5-kdc_1.6.dfsg.4~beta1-5lenny1_alpha.deb
      http://security.debian.org/pool/updates/main/k/krb5/krb5-kdc_1.6.dfsg. 4~beta1-5lenny1_alpha.deb

    * Debian krb5-pkinit_1.6.dfsg.4~beta1-5lenny1_alpha.deb
      http://security.debian.org/pool/updates/main/k/krb5/krb5-pkinit_1.6.df sg.4~beta1-5lenny1_alpha.deb

    * Debian krb5-rsh-server_1.6.dfsg.4~beta1-5lenny1_alpha.deb
      http://security.debian.org/pool/updates/main/k/krb5/krb5-rsh-server_1. 6.dfsg.4~beta1-5lenny1_alpha.deb

    * Debian krb5-telnetd_1.6.dfsg.4~beta1-5lenny1_alpha.deb
      http://security.debian.org/pool/updates/main/k/krb5/krb5-telnetd_1.6.d fsg.4~beta1-5lenny1_alpha.deb

    * Debian krb5-user_1.6.dfsg.4~beta1-5lenny1_alpha.deb
      http://security.debian.org/pool/updates/main/k/krb5/krb5-user_1.6.dfsg .4~beta1-5lenny1_alpha.deb

    * Debian libkadm55_1.6.dfsg.4~beta1-5lenny1_alpha.deb
      http://security.debian.org/pool/updates/main/k/krb5/libkadm55_1.6.dfsg .4~beta1-5lenny1_alpha.deb

    * Debian libkrb5-dbg_1.6.dfsg.4~beta1-5lenny1_alpha.deb
      http://security.debian.org/pool/updates/main/k/krb5/libkrb5-dbg_1.6.df sg.4~beta1-5lenny1_alpha.deb

    * Debian libkrb5-dev_1.6.dfsg.4~beta1-5lenny1_alpha.deb
      http://security.debian.org/pool/updates/main/k/krb5/libkrb5-dev_1.6.df sg.4~beta1-5lenny1_alpha.deb

    * Debian libkrb53_1.6.dfsg.4~beta1-5lenny1_alpha.deb
      http://security.debian.org/pool/updates/main/k/krb5/libkrb53_1.6.dfsg. 4~beta1-5lenny1_alpha.deb


Ubuntu Ubuntu Linux 8.10 sparc

    * Ubuntu krb5-admin-server_1.6.dfsg.4~beta1-3ubuntu0.1_sparc.deb
      http://ports.ubuntu.com/pool/universe/k/krb5/krb5-admin-server_1.6.dfs g.4~beta1-3ubuntu0.1_sparc.deb

    * Ubuntu krb5-clients_1.6.dfsg.4~beta1-3ubuntu0.1_sparc.deb
      http://ports.ubuntu.com/pool/universe/k/krb5/krb5-clients_1.6.dfsg.4~b eta1-3ubuntu0.1_sparc.deb

    * Ubuntu krb5-doc_1.6.dfsg.4~beta1-3ubuntu0.1_all.deb
      http://security.ubuntu.com/ubuntu/pool/main/k/krb5/krb5-doc_1.6.dfsg.4 ~beta1-3ubuntu0.1_all.deb

    * Ubuntu krb5-ftpd_1.6.dfsg.4~beta1-3ubuntu0.1_sparc.deb
      http://ports.ubuntu.com/pool/universe/k/krb5/krb5-ftpd_1.6.dfsg.4~beta 1-3ubuntu0.1_sparc.deb

    * Ubuntu krb5-kdc-ldap_1.6.dfsg.4~beta1-3ubuntu0.1_sparc.deb
      http://ports.ubuntu.com/pool/universe/k/krb5/krb5-kdc-ldap_1.6.dfsg.4~ beta1-3ubuntu0.1_sparc.deb

    * Ubuntu krb5-kdc_1.6.dfsg.4~beta1-3ubuntu0.1_sparc.deb
      http://ports.ubuntu.com/pool/universe/k/krb5/krb5-kdc_1.6.dfsg.4~beta1 -3ubuntu0.1_sparc.deb

    * Ubuntu krb5-pkinit_1.6.dfsg.4~beta1-3ubuntu0.1_sparc.deb
      http://ports.ubuntu.com/pool/universe/k/krb5/krb5-pkinit_1.6.dfsg.4~be ta1-3ubuntu0.1_sparc.deb

    * Ubuntu krb5-rsh-server_1.6.dfsg.4~beta1-3ubuntu0.1_sparc.deb
      http://ports.ubuntu.com/pool/universe/k/krb5/krb5-rsh-server_1.6.dfsg. 4~beta1-3ubuntu0.1_sparc.deb

    * Ubuntu krb5-telnetd_1.6.dfsg.4~beta1-3ubuntu0.1_sparc.deb
      http://ports.ubuntu.com/pool/universe/k/krb5/krb5-telnetd_1.6.dfsg.4~b eta1-3ubuntu0.1_sparc.deb

    * Ubuntu krb5-user_1.6.dfsg.4~beta1-3ubuntu0.1_sparc.deb
      http://ports.ubuntu.com/pool/main/k/krb5/krb5-user_1.6.dfsg.4~beta1-3u buntu0.1_sparc.deb

    * Ubuntu libkadm55_1.6.dfsg.4~beta1-3ubuntu0.1_sparc.deb
      http://ports.ubuntu.com/pool/main/k/krb5/libkadm55_1.6.dfsg.4~beta1-3u buntu0.1_sparc.deb

    * Ubuntu libkrb5-dbg_1.6.dfsg.4~beta1-3ubuntu0.1_sparc.deb
      http://ports.ubuntu.com/pool/main/k/krb5/libkrb5-dbg_1.6.dfsg.4~beta1- 3ubuntu0.1_sparc.deb

    * Ubuntu libkrb5-dev_1.6.dfsg.4~beta1-3ubuntu0.1_sparc.deb
      http://ports.ubuntu.com/pool/main/k/krb5/libkrb5-dev_1.6.dfsg.4~beta1- 3ubuntu0.1_sparc.deb

    * Ubuntu libkrb53_1.6.dfsg.4~beta1-3ubuntu0.1_sparc.deb
      http://ports.ubuntu.com/pool/main/k/krb5/libkrb53_1.6.dfsg.4~beta1-3ub untu0.1_sparc.deb


Debian Linux 5.0 armel

    * Debian krb5-admin-server_1.6.dfsg.4~beta1-5lenny1_armel.deb
      http://security.debian.org/pool/updates/main/k/krb5/krb5-admin-server_ 1.6.dfsg.4~beta1-5lenny1_armel.deb

    * Debian krb5-clients_1.6.dfsg.4~beta1-5lenny1_armel.deb
      http://security.debian.org/pool/updates/main/k/krb5/krb5-clients_1.6.d fsg.4~beta1-5lenny1_armel.deb

    * Debian krb5-doc_1.6.dfsg.4~beta1-5lenny1_all.deb
      http://security.debian.org/pool/updates/main/k/krb5/krb5-doc_1.6.dfsg. 4~beta1-5lenny1_all.deb

    * Debian krb5-ftpd_1.6.dfsg.4~beta1-5lenny1_armel.deb
      http://security.debian.org/pool/updates/main/k/krb5/krb5-ftpd_1.6.dfsg .4~beta1-5lenny1_armel.deb

    * Debian krb5-kdc-ldap_1.6.dfsg.4~beta1-5lenny1_armel.deb
      http://security.debian.org/pool/updates/main/k/krb5/krb5-kdc-ldap_1.6. dfsg.4~beta1-5lenny1_armel.deb

    * Debian krb5-kdc_1.6.dfsg.4~beta1-5lenny1_armel.deb
      http://security.debian.org/pool/updates/main/k/krb5/krb5-kdc_1.6.dfsg. 4~beta1-5lenny1_armel.deb

    * Debian krb5-pkinit_1.6.dfsg.4~beta1-5lenny1_armel.deb
      http://security.debian.org/pool/updates/main/k/krb5/krb5-pkinit_1.6.df sg.4~beta1-5lenny1_armel.deb

    * Debian krb5-rsh-server_1.6.dfsg.4~beta1-5lenny1_armel.deb
      http://security.debian.org/pool/updates/main/k/krb5/krb5-rsh-server_1. 6.dfsg.4~beta1-5lenny1_armel.deb

    * Debian krb5-telnetd_1.6.dfsg.4~beta1-5lenny1_armel.deb
      http://security.debian.org/pool/updates/main/k/krb5/krb5-telnetd_1.6.d fsg.4~beta1-5lenny1_armel.deb

    * Debian krb5-user_1.6.dfsg.4~beta1-5lenny1_armel.deb
      http://security.debian.org/pool/updates/main/k/krb5/krb5-user_1.6.dfsg .4~beta1-5lenny1_armel.deb

    * Debian libkadm55_1.6.dfsg.4~beta1-5lenny1_armel.deb
      http://security.debian.org/pool/updates/main/k/krb5/libkadm55_1.6.dfsg .4~beta1-5lenny1_armel.deb

    * Debian libkrb5-dbg_1.6.dfsg.4~beta1-5lenny1_armel.deb
      http://security.debian.org/pool/updates/main/k/krb5/libkrb5-dbg_1.6.df sg.4~beta1-5lenny1_armel.deb

    * Debian libkrb5-dev_1.6.dfsg.4~beta1-5lenny1_armel.deb
      http://security.debian.org/pool/updates/main/k/krb5/libkrb5-dev_1.6.df sg.4~beta1-5lenny1_armel.deb

    * Debian libkrb53_1.6.dfsg.4~beta1-5lenny1_armel.deb
      http://security.debian.org/pool/updates/main/k/krb5/libkrb53_1.6.dfsg. 4~beta1-5lenny1_armel.deb


S.u.S.E. openSUSE 11.0

    * S.u.S.E. krb5-1.6.3-50.3.i586.rpm
      http://download.opensuse.org/update/11.0/rpm/i586/krb5-1.6.3-50.3.i586 .rpm

    * S.u.S.E. krb5-1.6.3-50.3.ppc.rpm
      http://download.opensuse.org/update/11.0/rpm/ppc/krb5-1.6.3-50.3.ppc.r pm

    * S.u.S.E. krb5-1.6.3-50.3.x86_64.rpm
      http://download.opensuse.org/update/11.0/rpm/x86_64/krb5-1.6.3-50.3.x8 6_64.rpm

    * S.u.S.E. krb5-1.6.3-50.5.i586.rpm
      http://download.opensuse.org/update/11.0/rpm/i586/krb5-1.6.3-50.5.i586 .rpm

    * S.u.S.E. krb5-1.6.3-50.5.ppc.rpm
      http://download.opensuse.org/update/11.0/rpm/ppc/krb5-1.6.3-50.5.ppc.r pm

    * S.u.S.E. krb5-1.6.3-50.5.x86_64.rpm
      http://download.opensuse.org/update/11.0/rpm/x86_64/krb5-1.6.3-50.5.x8 6_64.rpm

    * S.u.S.E. krb5-32bit-1.6.3-50.3.x86_64.rpm
      http://download.opensuse.org/update/11.0/rpm/x86_64/krb5-32bit-1.6.3-5 0.3.x86_64.rpm

    * S.u.S.E. krb5-32bit-1.6.3-50.5.x86_64.rpm
      http://download.opensuse.org/update/11.0/rpm/x86_64/krb5-32bit-1.6.3-5 0.5.x86_64.rpm

    * S.u.S.E. krb5-64bit-1.6.3-50.3.ppc.rpm
      http://download.opensuse.org/update/11.0/rpm/ppc/krb5-64bit-1.6.3-50.3 .ppc.rpm

    * S.u.S.E. krb5-64bit-1.6.3-50.5.ppc.rpm
      http://download.opensuse.org/update/11.0/rpm/ppc/krb5-64bit-1.6.3-50.5 .ppc.rpm

    * S.u.S.E. krb5-apps-clients-1.6.3-50.3.i586.rpm
      http://download.opensuse.org/update/11.0/rpm/i586/krb5-apps-clients-1. 6.3-50.3.i586.rpm

    * S.u.S.E. krb5-apps-clients-1.6.3-50.3.ppc.rpm
      http://download.opensuse.org/update/11.0/rpm/ppc/krb5-apps-clients-1.6 .3-50.3.ppc.rpm

    * S.u.S.E. krb5-apps-clients-1.6.3-50.3.x86_64.rpm
      http://download.opensuse.org/update/11.0/rpm/x86_64/krb5-apps-clients- 1.6.3-50.3.x86_64.rpm

    * S.u.S.E. krb5-apps-clients-1.6.3-50.5.i586.rpm
      http://download.opensuse.org/update/11.0/rpm/i586/krb5-apps-clients-1. 6.3-50.5.i586.rpm

    * S.u.S.E. krb5-apps-clients-1.6.3-50.5.ppc.rpm
      http://download.opensuse.org/update/11.0/rpm/ppc/krb5-apps-clients-1.6 .3-50.5.ppc.rpm

    * S.u.S.E. krb5-apps-clients-1.6.3-50.5.x86_64.rpm
      http://download.opensuse.org/update/11.0/rpm/x86_64/krb5-apps-clients- 1.6.3-50.5.x86_64.rpm

    * S.u.S.E. krb5-apps-servers-1.6.3-50.3.i586.rpm
      http://download.opensuse.org/update/11.0/rpm/i586/krb5-apps-servers-1. 6.3-50.3.i586.rpm

    * S.u.S.E. krb5-apps-servers-1.6.3-50.3.ppc.rpm
      http://download.opensuse.org/update/11.0/rpm/ppc/krb5-apps-servers-1.6 .3-50.3.ppc.rpm

    * S.u.S.E. krb5-apps-servers-1.6.3-50.3.x86_64.rpm
      http://download.opensuse.org/update/11.0/rpm/x86_64/krb5-apps-servers- 1.6.3-50.3.x86_64.rpm

    * S.u.S.E. krb5-apps-servers-1.6.3-50.5.i586.rpm
      http://download.opensuse.org/update/11.0/rpm/i586/krb5-apps-servers-1. 6.3-50.5.i586.rpm

    * S.u.S.E. krb5-apps-servers-1.6.3-50.5.ppc.rpm
      http://download.opensuse.org/update/11.0/rpm/ppc/krb5-apps-servers-1.6 .3-50.5.ppc.rpm

    * S.u.S.E. krb5-apps-servers-1.6.3-50.5.x86_64.rpm
      http://download.opensuse.org/update/11.0/rpm/x86_64/krb5-apps-servers- 1.6.3-50.5.x86_64.rpm

    * S.u.S.E. krb5-client-1.6.3-50.3.i586.rpm
      http://download.opensuse.org/update/11.0/rpm/i586/krb5-client-1.6.3-50 .3.i586.rpm

    * S.u.S.E. krb5-client-1.6.3-50.3.ppc.rpm
      http://download.opensuse.org/update/11.0/rpm/ppc/krb5-client-1.6.3-50. 3.ppc.rpm

    * S.u.S.E. krb5-client-1.6.3-50.3.x86_64.rpm
      http://download.opensuse.org/update/11.0/rpm/x86_64/krb5-client-1.6.3- 50.3.x86_64.rpm

    * S.u.S.E. krb5-client-1.6.3-50.5.i586.rpm
      http://download.opensuse.org/update/11.0/rpm/i586/krb5-client-1.6.3-50 .5.i586.rpm

    * S.u.S.E. krb5-client-1.6.3-50.5.ppc.rpm
      http://download.opensuse.org/update/11.0/rpm/ppc/krb5-client-1.6.3-50. 5.ppc.rpm

    * S.u.S.E. krb5-client-1.6.3-50.5.x86_64.rpm
      http://download.opensuse.org/update/11.0/rpm/x86_64/krb5-client-1.6.3- 50.5.x86_64.rpm

    * S.u.S.E. krb5-debuginfo-1.6.3-50.3.i586.rpm
      http://download.opensuse.org/debug/update/11.0/rpm/i586/krb5-debuginfo -1.6.3-50.3.i586.rpm

    * S.u.S.E. krb5-debuginfo-1.6.3-50.3.ppc.rpm
      http://download.opensuse.org/debug/update/11.0/rpm/ppc/krb5-debuginfo- 1.6.3-50.3.ppc.rpm

    * S.u.S.E. krb5-debuginfo-1.6.3-50.3.x86_64.rpm
      http://download.opensuse.org/debug/update/11.0/rpm/x86_64/krb5-debugin fo-1.6.3-50.3.x86_64.rpm

    * S.u.S.E. krb5-debuginfo-1.6.3-50.5.i586.rpm
      http://download.opensuse.org/debug/update/11.0/rpm/i586/krb5-debuginfo -1.6.3-50.5.i586.rpm

    * S.u.S.E. krb5-debuginfo-1.6.3-50.5.ppc.rpm
      http://download.opensuse.org/debug/update/11.0/rpm/ppc/krb5-debuginfo- 1.6.3-50.5.ppc.rpm

    * S.u.S.E. krb5-debuginfo-1.6.3-50.5.x86_64.rpm
      http://download.opensuse.org/debug/update/11.0/rpm/x86_64/krb5-debugin fo-1.6.3-50.5.x86_64.rpm

    * S.u.S.E. krb5-debugsource-1.6.3-50.3.i586.rpm
      http://download.opensuse.org/debug/update/11.0/rpm/i586/krb5-debugsour ce-1.6.3-50.3.i586.rpm

    * S.u.S.E. krb5-debugsource-1.6.3-50.3.ppc.rpm
      http://download.opensuse.org/debug/update/11.0/rpm/ppc/krb5-debugsourc e-1.6.3-50.3.ppc.rpm

    * S.u.S.E. krb5-debugsource-1.6.3-50.3.x86_64.rpm
      http://download.opensuse.org/debug/update/11.0/rpm/x86_64/krb5-debugso urce-1.6.3-50.3.x86_64.rpm

    * S.u.S.E. krb5-debugsource-1.6.3-50.5.i586.rpm
      http://download.opensuse.org/debug/update/11.0/rpm/i586/krb5-debugsour ce-1.6.3-50.5.i586.rpm

    * S.u.S.E. krb5-debugsource-1.6.3-50.5.ppc.rpm
      http://download.opensuse.org/debug/update/11.0/rpm/ppc/krb5-debugsourc e-1.6.3-50.5.ppc.rpm

    * S.u.S.E. krb5-debugsource-1.6.3-50.5.x86_64.rpm
      http://download.opensuse.org/debug/update/11.0/rpm/x86_64/krb5-debugso urce-1.6.3-50.5.x86_64.rpm

    * S.u.S.E. krb5-devel-1.6.3-50.3.i586.rpm
      http://download.opensuse.org/update/11.0/rpm/i586/krb5-devel-1.6.3-50. 3.i586.rpm

    * S.u.S.E. krb5-devel-1.6.3-50.3.ppc.rpm
      http://download.opensuse.org/update/11.0/rpm/ppc/krb5-devel-1.6.3-50.3 .ppc.rpm

    * S.u.S.E. krb5-devel-1.6.3-50.3.x86_64.rpm
      http://download.opensuse.org/update/11.0/rpm/x86_64/krb5-devel-1.6.3-5 0.3.x86_64.rpm

    * S.u.S.E. krb5-devel-1.6.3-50.5.i586.rpm
      http://download.opensuse.org/update/11.0/rpm/i586/krb5-devel-1.6.3-50. 5.i586.rpm

    * S.u.S.E. krb5-devel-1.6.3-50.5.ppc.rpm
      http://download.opensuse.org/update/11.0/rpm/ppc/krb5-devel-1.6.3-50.5 .ppc.rpm

    * S.u.S.E. krb5-devel-1.6.3-50.5.x86_64.rpm
      http://download.opensuse.org/update/11.0/rpm/x86_64/krb5-devel-1.6.3-5 0.5.x86_64.rpm

    * S.u.S.E. krb5-devel-32bit-1.6.3-50.3.x86_64.rpm
      http://download.opensuse.org/update/11.0/rpm/x86_64/krb5-devel-32bit-1 .6.3-50.3.x86_64.rpm

    * S.u.S.E. krb5-devel-32bit-1.6.3-50.5.x86_64.rpm
      http://download.opensuse.org/update/11.0/rpm/x86_64/krb5-devel-32bit-1 .6.3-50.5.x86_64.rpm

    * S.u.S.E. krb5-devel-64bit-1.6.3-50.3.ppc.rpm
      http://download.opensuse.org/update/11.0/rpm/ppc/krb5-devel-64bit-1.6. 3-50.3.ppc.rpm

    * S.u.S.E. krb5-devel-64bit-1.6.3-50.5.ppc.rpm
      http://download.opensuse.org/update/11.0/rpm/ppc/krb5-devel-64bit-1.6. 3-50.5.ppc.rpm

    * S.u.S.E. krb5-server-1.6.3-50.3.i586.rpm
      http://download.opensuse.org/update/11.0/rpm/i586/krb5-server-1.6.3-50 .3.i586.rpm

    * S.u.S.E. krb5-server-1.6.3-50.3.ppc.rpm
      http://download.opensuse.org/update/11.0/rpm/ppc/krb5-server-1.6.3-50. 3.ppc.rpm

    * S.u.S.E. krb5-server-1.6.3-50.3.x86_64.rpm
      http://download.opensuse.org/update/11.0/rpm/x86_64/krb5-server-1.6.3- 50.3.x86_64.rpm

    * S.u.S.E. krb5-server-1.6.3-50.5.i586.rpm
      http://download.opensuse.org/update/11.0/rpm/i586/krb5-server-1.6.3-50 .5.i586.rpm

    * S.u.S.E. krb5-server-1.6.3-50.5.ppc.rpm
      http://download.opensuse.org/update/11.0/rpm/ppc/krb5-server-1.6.3-50. 5.ppc.rpm

    * S.u.S.E. krb5-server-1.6.3-50.5.x86_64.rpm
      http://download.opensuse.org/update/11.0/rpm/x86_64/krb5-server-1.6.3- 50.5.x86_64.rpm


MandrakeSoft Linux Mandrake 2009.0 x86_64

    * Mandriva ftp-client-krb5-1.6.3-6.2mdv2009.0.x86_64.rpm
      http://www.mandriva.com/en/download/

    * Mandriva ftp-server-krb5-1.6.3-6.2mdv2009.0.x86_64.rpm
      http://www.mandriva.com/en/download/

    * Mandriva krb5-1.6.3-6.2mdv2009.0.x86_64.rpm
      http://www.mandriva.com/en/download/

    * Mandriva krb5-server-1.6.3-6.2mdv2009.0.x86_64.rpm
      http://www.mandriva.com/en/download/

    * Mandriva krb5-workstation-1.6.3-6.2mdv2009.0.x86_64.rpm
      http://www.mandriva.com/en/download/

    * Mandriva lib64krb53-1.6.3-6.2mdv2009.0.x86_64.rpm
      http://www.mandriva.com/en/download/

    * Mandriva lib64krb53-devel-1.6.3-6.2mdv2009.0.x86_64.rpm
      http://www.mandriva.com/en/download/

    * Mandriva telnet-client-krb5-1.6.3-6.2mdv2009.0.x86_64.rpm
      http://www.mandriva.com/en/download/

    * Mandriva telnet-server-krb5-1.6.3-6.2mdv2009.0.x86_64.rpm
      http://www.mandriva.com/en/download/


Debian Linux 4.0 mips

    * Debian krb5-admin-server_1.4.4-7etch7_mips.deb
      http://security.debian.org/pool/updates/main/k/krb5/krb5-admin-server_ 1.4.4-7etch7_mips.deb

    * Debian krb5-clients_1.4.4-7etch7_mips.deb
      http://security.debian.org/pool/updates/main/k/krb5/krb5-clients_1.4.4 -7etch7_mips.deb

    * Debian krb5-doc_1.4.4-7etch7_all.deb
      http://security.debian.org/pool/updates/main/k/krb5/krb5-doc_1.4.4-7et ch7_all.deb

    * Debian krb5-ftpd_1.4.4-7etch7_mips.deb
      http://security.debian.org/pool/updates/main/k/krb5/krb5-ftpd_1.4.4-7e tch7_mips.deb

    * Debian krb5-kdc_1.4.4-7etch7_mips.deb
      http://security.debian.org/pool/updates/main/k/krb5/krb5-kdc_1.4.4-7et ch7_mips.deb

    * Debian krb5-rsh-server_1.4.4-7etch7_mips.deb
      http://security.debian.org/pool/updates/main/k/krb5/krb5-rsh-server_1. 4.4-7etch7_mips.deb

    * Debian krb5-telnetd_1.4.4-7etch7_mips.deb
      http://security.debian.org/pool/updates/main/k/krb5/krb5-telnetd_1.4.4 -7etch7_mips.deb

    * Debian krb5-user_1.4.4-7etch7_mips.deb
      http://security.debian.org/pool/updates/main/k/krb5/krb5-user_1.4.4-7e tch7_mips.deb

    * Debian libkadm55_1.4.4-7etch7_mips.deb
      http://security.debian.org/pool/updates/main/k/krb5/libkadm55_1.4.4-7e tch7_mips.deb

    * Debian libkrb5-dbg_1.4.4-7etch7_mips.deb
      http://security.debian.org/pool/updates/main/k/krb5/libkrb5-dbg_1.4.4- 7etch7_mips.deb

    * Debian libkrb5-dev_1.4.4-7etch7_mips.deb
      http://security.debian.org/pool/updates/main/k/krb5/libkrb5-dev_1.4.4- 7etch7_mips.deb

    * Debian libkrb53_1.4.4-7etch7_mips.deb
      http://security.debian.org/pool/updates/main/k/krb5/libkrb53_1.4.4-7et ch7_mips.deb


Debian Linux 4.0 arm

    * Debian krb5-admin-server_1.4.4-7etch7_arm.deb
      http://security.debian.org/pool/updates/main/k/krb5/krb5-admin-server_ 1.4.4-7etch7_arm.deb

    * Debian krb5-clients_1.4.4-7etch7_arm.deb
      http://security.debian.org/pool/updates/main/k/krb5/krb5-clients_1.4.4 -7etch7_arm.deb

    * Debian krb5-doc_1.4.4-7etch7_all.deb
      http://security.debian.org/pool/updates/main/k/krb5/krb5-doc_1.4.4-7et ch7_all.deb

    * Debian krb5-ftpd_1.4.4-7etch7_arm.deb
      http://security.debian.org/pool/updates/main/k/krb5/krb5-ftpd_1.4.4-7e tch7_arm.deb

    * Debian krb5-kdc_1.4.4-7etch7_arm.deb
      http://security.debian.org/pool/updates/main/k/krb5/krb5-kdc_1.4.4-7et ch7_arm.deb

    * Debian krb5-rsh-server_1.4.4-7etch7_arm.deb
      http://security.debian.org/pool/updates/main/k/krb5/krb5-rsh-server_1. 4.4-7etch7_arm.deb

    * Debian krb5-telnetd_1.4.4-7etch7_arm.deb
      http://security.debian.org/pool/updates/main/k/krb5/krb5-telnetd_1.4.4 -7etch7_arm.deb

    * Debian krb5-user_1.4.4-7etch7_arm.deb
      http://security.debian.org/pool/updates/main/k/krb5/krb5-user_1.4.4-7e tch7_arm.deb

    * Debian libkadm55_1.4.4-7etch7_arm.deb
      http://security.debian.org/pool/updates/main/k/krb5/libkadm55_1.4.4-7e tch7_arm.deb

    * Debian libkrb5-dbg_1.4.4-7etch7_arm.deb
      http://security.debian.org/pool/updates/main/k/krb5/libkrb5-dbg_1.4.4- 7etch7_arm.deb

    * Debian libkrb5-dev_1.4.4-7etch7_arm.deb
      http://security.debian.org/pool/updates/main/k/krb5/libkrb5-dev_1.4.4- 7etch7_arm.deb

    * Debian libkrb53_1.4.4-7etch7_arm.deb
      http://security.debian.org/pool/updates/main/k/krb5/libkrb53_1.4.4-7et ch7_arm.deb


Debian Linux 4.0 m68k

    * Debian krb5-doc_1.4.4-7etch7_all.deb
      http://security.debian.org/pool/updates/main/k/krb5/krb5-doc_1.4.4-7et ch7_all.deb


Debian Linux 5.0 hppa

    * Debian krb5-admin-server_1.6.dfsg.4~beta1-5lenny1_hppa.deb
      http://security.debian.org/pool/updates/main/k/krb5/krb5-admin-server_ 1.6.dfsg.4~beta1-5lenny1_hppa.deb

    * Debian krb5-clients_1.6.dfsg.4~beta1-5lenny1_hppa.deb
      http://security.debian.org/pool/updates/main/k/krb5/krb5-clients_1.6.d fsg.4~beta1-5lenny1_hppa.deb

    * Debian krb5-doc_1.6.dfsg.4~beta1-5lenny1_all.deb
      http://security.debian.org/pool/updates/main/k/krb5/krb5-doc_1.6.dfsg. 4~beta1-5lenny1_all.deb

    * Debian krb5-ftpd_1.6.dfsg.4~beta1-5lenny1_hppa.deb
      http://security.debian.org/pool/updates/main/k/krb5/krb5-ftpd_1.6.dfsg .4~beta1-5lenny1_hppa.deb

    * Debian krb5-kdc-ldap_1.6.dfsg.4~beta1-5lenny1_hppa.deb
      http://security.debian.org/pool/updates/main/k/krb5/krb5-kdc-ldap_1.6. dfsg.4~beta1-5lenny1_hppa.deb

    * Debian krb5-kdc_1.6.dfsg.4~beta1-5lenny1_hppa.deb
      http://security.debian.org/pool/updates/main/k/krb5/krb5-kdc_1.6.dfsg. 4~beta1-5lenny1_hppa.deb

    * Debian krb5-pkinit_1.6.dfsg.4~beta1-5lenny1_hppa.deb
      http://security.debian.org/pool/updates/main/k/krb5/krb5-pkinit_1.6.df sg.4~beta1-5lenny1_hppa.deb

    * Debian krb5-rsh-server_1.6.dfsg.4~beta1-5lenny1_hppa.deb
      http://security.debian.org/pool/updates/main/k/krb5/krb5-rsh-server_1. 6.dfsg.4~beta1-5lenny1_hppa.deb

    * Debian krb5-telnetd_1.6.dfsg.4~beta1-5lenny1_hppa.deb
      http://security.debian.org/pool/updates/main/k/krb5/krb5-telnetd_1.6.d fsg.4~beta1-5lenny1_hppa.deb

    * Debian krb5-user_1.6.dfsg.4~beta1-5lenny1_hppa.deb
      http://security.debian.org/pool/updates/main/k/krb5/krb5-user_1.6.dfsg .4~beta1-5lenny1_hppa.deb

    * Debian libkadm55_1.6.dfsg.4~beta1-5lenny1_hppa.deb
      http://security.debian.org/pool/updates/main/k/krb5/libkadm55_1.6.dfsg .4~beta1-5lenny1_hppa.deb

    * Debian libkrb5-dbg_1.6.dfsg.4~beta1-5lenny1_hppa.deb
      http://security.debian.org/pool/updates/main/k/krb5/libkrb5-dbg_1.6.df sg.4~beta1-5lenny1_hppa.deb

    * Debian libkrb5-dev_1.6.dfsg.4~beta1-5lenny1_hppa.deb
      http://security.debian.org/pool/updates/main/k/krb5/libkrb5-dev_1.6.df sg.4~beta1-5lenny1_hppa.deb

    * Debian libkrb53_1.6.dfsg.4~beta1-5lenny1_hppa.deb
      http://security.debian.org/pool/updates/main/k/krb5/libkrb53_1.6.dfsg. 4~beta1-5lenny1_hppa.deb


Debian Linux 5.0 m68k

    * Debian krb5-doc_1.6.dfsg.4~beta1-5lenny1_all.deb
      http://security.debian.org/pool/updates/main/k/krb5/krb5-doc_1.6.dfsg. 4~beta1-5lenny1_all.deb


Ubuntu Ubuntu Linux 8.04 LTS i386

    * Ubuntu krb5-admin-server_1.6.dfsg.3~beta1-2ubuntu1.1_i386.deb
      http://security.ubuntu.com/ubuntu/pool/universe/k/krb5/krb5-admin-serv er_1.6.dfsg.3~beta1-2ubuntu1.1_i386.deb

    * Ubuntu krb5-clients_1.6.dfsg.3~beta1-2ubuntu1.1_i386.deb
      http://security.ubuntu.com/ubuntu/pool/universe/k/krb5/krb5-clients_1. 6.dfsg.3~beta1-2ubuntu1.1_i386.deb

    * Ubuntu krb5-doc_1.6.dfsg.3~beta1-2ubuntu1.1_all.deb
      http://security.ubuntu.com/ubuntu/pool/main/k/krb5/krb5-doc_1.6.dfsg.3 ~beta1-2ubuntu1.1_all.deb

    * Ubuntu krb5-ftpd_1.6.dfsg.3~beta1-2ubuntu1.1_i386.deb
      http://security.ubuntu.com/ubuntu/pool/universe/k/krb5/krb5-ftpd_1.6.d fsg.3~beta1-2ubuntu1.1_i386.deb

    * Ubuntu krb5-kdc_1.6.dfsg.3~beta1-2ubuntu1.1_i386.deb
      http://security.ubuntu.com/ubuntu/pool/universe/k/krb5/krb5-kdc_1.6.df sg.3~beta1-2ubuntu1.1_i386.deb

    * Ubuntu krb5-pkinit_1.6.dfsg.3~beta1-2ubuntu1.1_i386.deb
      http://security.ubuntu.com/ubuntu/pool/universe/k/krb5/krb5-pkinit_1.6 .dfsg.3~beta1-2ubuntu1.1_i386.deb

    * Ubuntu krb5-rsh-server_1.6.dfsg.3~beta1-2ubuntu1.1_i386.deb
      http://security.ubuntu.com/ubuntu/pool/universe/k/krb5/krb5-rsh-server _1.6.dfsg.3~beta1-2ubuntu1.1_i386.deb

    * Ubuntu krb5-telnetd_1.6.dfsg.3~beta1-2ubuntu1.1_i386.deb
      http://security.ubuntu.com/ubuntu/pool/universe/k/krb5/krb5-telnetd_1. 6.dfsg.3~beta1-2ubuntu1.1_i386.deb

    * Ubuntu krb5-user_1.6.dfsg.3~beta1-2ubuntu1.1_i386.deb
      http://security.ubuntu.com/ubuntu/pool/main/k/krb5/krb5-user_1.6.dfsg. 3~beta1-2ubuntu1.1_i386.deb

    * Ubuntu libkadm55_1.6.dfsg.3~beta1-2ubuntu1.1_i386.deb
      http://security.ubuntu.com/ubuntu/pool/main/k/krb5/libkadm55_1.6.dfsg. 3~beta1-2ubuntu1.1_i386.deb

    * Ubuntu libkrb5-dbg_1.6.dfsg.3~beta1-2ubuntu1.1_i386.deb
      http://security.ubuntu.com/ubuntu/pool/main/k/krb5/libkrb5-dbg_1.6.dfs g.3~beta1-2ubuntu1.1_i386.deb

    * Ubuntu libkrb5-dev_1.6.dfsg.3~beta1-2ubuntu1.1_i386.deb
      http://security.ubuntu.com/ubuntu/pool/main/k/krb5/libkrb5-dev_1.6.dfs g.3~beta1-2ubuntu1.1_i386.deb

    * Ubuntu libkrb53_1.6.dfsg.3~beta1-2ubuntu1.1_i386.deb
      http://security.ubuntu.com/ubuntu/pool/main/k/krb5/libkrb53_1.6.dfsg.3 ~beta1-2ubuntu1.1_i386.deb


VMWare ESX Server 3.5 ESX350-200904401

    * VMWare ESX350-200906407-SG.zip
      http://download3.vmware.com/software/vi/ESX350-200906407-SG.zip


MIT Kerberos 5 1.0

    * MIT 2009-002-patch.txt
      http://web.mit.edu/kerberos/advisories/2009-002-patch.txt


MIT Kerberos 5 1.0.6

    * MIT 2009-002-patch.txt
      http://web.mit.edu/kerberos/advisories/2009-002-patch.txt


MIT Kerberos 5 1.0.8

    * MIT 2009-002-patch.txt
      http://web.mit.edu/kerberos/advisories/2009-002-patch.txt


MIT Kerberos 5 1.1.1

    * MIT 2009-002-patch.txt
      http://web.mit.edu/kerberos/advisories/2009-002-patch.txt


MIT Kerberos 5 1.3.3

    * MIT 2009-002-patch.txt
      http://web.mit.edu/kerberos/advisories/2009-002-patch.txt


MIT Kerberos 5 1.3.6

    * MIT 2009-002-patch.txt
      http://web.mit.edu/kerberos/advisories/2009-002-patch.txt


MIT Kerberos 5 1.5.1

    * MIT 2009-002-patch.txt
      http://web.mit.edu/kerberos/advisories/2009-002-patch.txt


MIT Kerberos 5 1.5.3

    * MIT 2009-002-patch.txt
      http://web.mit.edu/kerberos/advisories/2009-002-patch.txt


MIT Kerberos 5 1.5.5

    * MIT 2009-002-patch.txt
      http://web.mit.edu/kerberos/advisories/2009-002-patch.txt


MIT Kerberos 5 1.6.3

    * MIT 2009-002-patch.txt
      http://web.mit.edu/kerberos/advisories/2009-002-patch.txt


Apple Mac OS X 10.4.11

    * Apple SecUpd2009-002PPC.dmg
      (PowerPC)
      http://support.apple.com/downloads/DL818/SecUpd2009-002PPC.dmg


Apple Mac OS X Server 10.5.2

    * Apple MacOSXServerUpdCombo10.5.7.dmg
      http://support.apple.com/downloads/DL829/MacOSXServerUpdCombo10.5.7.dm g


Apple Mac OS X 10.5.3

    * Apple MacOSXUpdCombo10.5.7.dmg
      http://support.apple.com/downloads/DL827/MacOSXUpdCombo10.5.7.dmg


Apple Mac OS X 10.5.6

    * Apple MacOSXUpd10.5.7.dmg
      http://support.apple.com/downloads/DL826/MacOSXUpd10.5.7.dmg


MandrakeSoft Corporate Server 3.0

    * Mandriva ftp-client-krb5-1.3-6.11.C30mdk.i586.rpm
      http://www.mandriva.com/en/download/

    * Mandriva ftp-server-krb5-1.3-6.11.C30mdk.i586.rpm
      http://www.mandriva.com/en/download/

    * Mandriva krb5-server-1.3-6.11.C30mdk.i586.rpm
      http://www.mandriva.com/en/download/

    * Mandriva krb5-workstation-1.3-6.11.C30mdk.i586.rpm
      http://www.mandriva.com/en/download/

    * Mandriva libkrb51-1.3-6.11.C30mdk.i586.rpm
      http://www.mandriva.com/en/download/

    * Mandriva libkrb51-devel-1.3-6.11.C30mdk.i586.rpm
      http://www.mandriva.com/en/download/

    * Mandriva telnet-client-krb5-1.3-6.11.C30mdk.i586.rpm
      http://www.mandriva.com/en/download/

    * Mandriva telnet-server-krb5-1.3-6.11.C30mdk.i586.rpm
      http://www.mandriva.com/en/download/


MandrakeSoft Corporate Server 4.0 x86_64

    * Mandriva ftp-client-krb5-1.4.3-5.7.20060mlcs4.x86_64.rpm
      http://www.mandriva.com/en/download/

    * Mandriva ftp-server-krb5-1.4.3-5.7.20060mlcs4.x86_64.rpm
      http://www.mandriva.com/en/download/

    * Mandriva krb5-server-1.4.3-5.7.20060mlcs4.x86_64.rpm
      http://www.mandriva.com/en/download/

    * Mandriva krb5-workstation-1.4.3-5.7.20060mlcs4.x86_64.rpm
      http://www.mandriva.com/en/download/

    * Mandriva lib64krb53-1.4.3-5.7.20060mlcs4.x86_64.rpm
      http://www.mandriva.com/en/download/

    * Mandriva lib64krb53-devel-1.4.3-5.7.20060mlcs4.x86_64.rpm
      http://www.mandriva.com/en/download/

    * Mandriva telnet-client-krb5-1.4.3-5.7.20060mlcs4.x86_64.rpm
      http://www.mandriva.com/en/download/

    * Mandriva telnet-server-krb5-1.4.3-5.7.20060mlcs4.x86_64.rpm
      http://www.mandriva.com/en/download/


MIT Kerberos 5 5.0 -1.4.1

    * MIT 2009-002-patch.txt
      http://web.mit.edu/kerberos/advisories/2009-002-patch.txt


MIT Kerberos 5 5.0 -1.0.x

    * MIT 2009-002-patch.txt
      http://web.mit.edu/kerberos/advisories/2009-002-patch.txt


MIT Kerberos 5 5.0 -1.2beta1

    * MIT 2009-002-patch.txt
      http://web.mit.edu/kerberos/advisories/2009-002-patch.txt


MIT Kerberos 5 5.0 -1.1

    * MIT 2009-002-patch.txt
      http://web.mit.edu/kerberos/advisories/2009-002-patch.txt

[***** End CVE-2009-0846 *****]

DOE-CIRC services are available to DOE, DOE Contractors, and the NIH. DOE-CIRC can be contacted at:
    Voice:          866-941-2472
    E-mail:          doecirc@doecirc.energy.gov
    World Wide Web:  http://www.doecirc.energy.gov


UCRL-MI-119788