Fix low-severity CVE-2018-20217 (an authenticated user who can obtain a TGT
using an older encryption type (DES, DES3, or RC4) can cause an
assertion failure in the KDC by sending an S4U2Self request.)
This update has been submitted for testing by adamwill.
This update has been submitted for testing by adamwill.
This update has obsoleted krb5-1.16.1-22.fc28, and has inherited its bugs and notes.
This update has been pushed to testing.
adamwill edited this update.
This update has been obsoleted by krb5-1.16.1-24.fc28.