Date: Thu, 21 Aug 2025 02:39:22 -0700 From: Cy Schubert <Cy.Schubert@cschubert.com> To: des@FreeBSD.org, freebsd-current@freebsd.org, ivy@freebsd.org Subject: Re: HEADS UP: MIT KRB5 1.22.1 Import Message-ID: <20250821093922.AEEBE213@slippy.cwsent.com> In-Reply-To: <20250821093615.B4293211@slippy.cwsent.com> References: <20250821055519.65D8B684@slippy.cwsent.com> <86frdlkw30.fsf@ltc.des.dev> <20250821093615.B4293211@slippy.cwsent.com>
index | next in thread | previous in thread | raw e-mail
In message <20250821093615.B4293211@slippy.cwsent.com>, Cy Schubert writes: > In message <86frdlkw30.fsf@ltc.des.dev>, =?utf-8?Q?Dag-Erling_Sm=C3=B8rgrav? > = w > rites: > > Cy Schubert <Cy.Schubert@cschubert.com> writes: > > > KRB5 1.22.0 released with a GSSAPI bug (CVE-2025-57736). The point patch= > > =20 > > > was applied on Aug 19 (f96110babbe1). 1.22.1 contains the point patch plu > = > > s=20 > > > an additional GSSAPI patch. I intend to commit it to HEAD after a few day > = > > s=20 > > > of testing on Aug 25. > > > > Please post your patch for review (using git arc, as described in the > > committers guide) so others can test it too. > > git arc does not work with vendor merges. There is a way to trick it though. See https://reviews.freebsd.org/D52083 for full patch. -- Cheers, Cy Schubert <Cy.Schubert@cschubert.com> FreeBSD UNIX: <cy@FreeBSD.org> Web: https://FreeBSD.org NTP: <cy@nwtime.org> Web: https://nwtime.org e**(i*pi)+1=0home | help
Want to link to this message? Use this
URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20250821093922.AEEBE213>
