| krb5-server-1.3.4-65.el4.x86_64
              [796 KiB] | Changelog
              by Huzaifa Sidhpurwala (2011-12-27): - Version bump | 
            | krb5-server-1.3.4-62.el4_8.3.x86_64
              [797 KiB] | Changelog
              by Nalin Dahyabhai (2010-11-12): - incorporate candidate patch for checksum acceptance issues from
  MITKRB5-SA-2010-007 (CVE-2010-1323, #652312) | 
            | krb5-server-1.3.4-62.el4_8.2.x86_64
              [796 KiB] | Changelog
              by Nalin Dahyabhai (2010-05-04): - add candidate patch to correct KDC null pointer dereference which
  could be triggered by malformed client requests (CVE-2010-1321, #583701) | 
            | krb5-server-1.3.4-62.el4_8.1.x86_64
              [796 KiB] | Changelog
              by Nalin Dahyabhai (2009-12-10): - add candidate patch to correct KDC integer overflows which could be
  triggered by malformed RC4 and AES ciphertexts (CVE-2009-4212, #546345) | 
            | krb5-server-1.3.4-60.el4_7.2.x86_64
              [795 KiB] | Changelog
              by Nalin Dahyabhai (2009-03-31): - whoops, actually add the patches | 
            | krb5-server-1.3.4-54.el4_6.1.x86_64
              [793 KiB] | Changelog
              by Nalin Dahyabhai (2008-03-05): - add preliminary patch to fix use of uninitialized pointer / double-free in
  KDC (CVE-2008-0062,CVE-2008-0063) (#432620, #432621)
- add backported patch to fix double-free in libgssapi_krb5 (CVE-2007-5971)
  (#415351) | 
            | krb5-server-1.3.4-49.x86_64
              [791 KiB] | Changelog
              by Nalin Dahyabhai (2007-06-01): - add patch to fix buffer overflow in kadmind (#239073, CVE-2007-2798) | 
            | krb5-server-1.3.4-46.x86_64
              [790 KiB] | Changelog
              by Nalin Dahyabhai (2007-03-19): - fix bug ID in changelog | 
            | krb5-server-1.3.4-33.x86_64
              [788 KiB] | Changelog
              by Nalin Dahyabhai (2006-08-01): - temporarily revert changes for #198633 | 
            | krb5-server-1.3.4-17.x86_64
              [786 KiB] | Changelog
              by Nalin Dahyabhai (2005-06-29): - fix telnet client environment variable disclosure the same way NetKit's
  telnet client did (CAN-2005-0488) (#159304)
- keep apps which call krb5_principal_compare() or krb5_realm_compare() with
  malformed or NULL principal structures from crashing outright (Thomas Biege)
  (#161471) |