[Bug 723840] Re: krb5-1.8 fails to verify MS PAC Checksum when AES 256 is used

Chuck Short chuck.short at canonical.com
Tue May 31 14:02:58 UTC 2011


This should be fixed in oneiric now.

** Changed in: krb5 (Ubuntu)
       Status: Fix Committed => Fix Released

** Also affects: krb5 (Ubuntu Lucid)
   Importance: Undecided
       Status: New

-- 
You received this bug notification because you are a member of Ubuntu
Foundations Bugs, which is subscribed to krb5 in Ubuntu.
https://bugs.launchpad.net/bugs/723840

Title:
  krb5-1.8 fails to verify MS PAC Checksum when AES 256 is used

Status in “krb5” package in Ubuntu:
  Fix Released
Status in “krb5” source package in Lucid:
  New
Status in “krb5” package in Debian:
  Fix Released

Bug description:
  Binary package hint: libkrb5-3

  libkrb5-3 in Lucid does not work properly when mediating between a
  Windows 7 client and a 2008R2 KDC after applying MS hotfix KB2425227.

  The bug has been reported previously here:
  http://mailman.mit.edu/pipermail/krbdev/2010-July/009148.html

  And here:
  http://www.mail-archive.com/squid-users@squid-cache.org/msg75789.html

  However, it's only since the MS hotfix that it has become a problem
  for us.

  Basically, the bug has been fixed in libkrb5-3 version 1.8.3, so all
  you have to do is update the package.

  I'm guessing you're going to get a lot more bug reports on this, trust
  MS to keep changing the goal posts and making our jobs harder.




More information about the foundations-bugs mailing list