Skip to content

Commit

Permalink
security/krb5-118: CVE-2022-42898: IGNORE and accelerate removal
Browse files Browse the repository at this point in the history
krb5-118 was desupported by MIT when krb5-120 was released. CVE-2022-42898
now requires its accelerated removal from the tree. It is now
flagged IGNORE until its removal on Nov 30, 2022.

MFH:		2022Q4
Security:	CVE-2022-42898
  • Loading branch information
cschuber committed Nov 15, 2022
1 parent de40003 commit c490505
Showing 1 changed file with 2 additions and 1 deletion.
3 changes: 2 additions & 1 deletion security/krb5-118/Makefile
Expand Up @@ -7,7 +7,8 @@ PKGNAMESUFFIX= -118
.endif

DEPECATED= Desupported by MIT following 1.20
EXPIRY= 2023-05-26
EXPIRY= 2022-11-30
IGNORE= Affected by CVE-2022-42898: integer overflow vulnerabilities in PAC parsing

PATCH_SITES= http://web.mit.edu/kerberos/advisories/
PATCH_DIST_STRIP= -p2
Expand Down

0 comments on commit c490505

Please sign in to comment.