Require krb5 to set the "Host:" header when speaking KKDCPP. This fixes use of TLS with SNI.
Fix low-impact CVE-2016-3120 where S4U2Self may cause KDC crash when anon is restricted
This update has been submitted for testing by rharwood.
This update has obsoleted krb5-1.14.1-8.fc23, and has inherited its bugs and notes.
This update has been obsoleted by krb5-1.14.3-4.fc23.
Please log in to add feedback.
Confirm request to re-trigger tests.
This update has been submitted for testing by rharwood.
This update has obsoleted krb5-1.14.1-8.fc23, and has inherited its bugs and notes.
This update has been obsoleted by krb5-1.14.3-4.fc23.