packages: heimdal/heimdal.spec, heimdal/heimdal-use_dns.patch (NEW) - fix r...

baggins baggins at pld-linux.org
Mon Dec 14 11:49:11 CET 2009


Author: baggins                      Date: Mon Dec 14 10:49:11 2009 GMT
Module: packages                      Tag: HEAD
---- Log message:
- fix regression in _gsskrb5_acquire_cred

---- Files affected:
packages/heimdal:
   heimdal.spec (1.189 -> 1.190) , heimdal-use_dns.patch (NONE -> 1.1)  (NEW)

---- Diffs:

================================================================
Index: packages/heimdal/heimdal.spec
diff -u packages/heimdal/heimdal.spec:1.189 packages/heimdal/heimdal.spec:1.190
--- packages/heimdal/heimdal.spec:1.189	Thu Dec 10 15:41:14 2009
+++ packages/heimdal/heimdal.spec	Mon Dec 14 11:49:06 2009
@@ -7,7 +7,7 @@
 Summary(pl.UTF-8):	Implementacja Heimdal systemu Kerberos V5
 Name:		heimdal
 Version:	1.3.1
-Release:	3.2
+Release:	3.3
 License:	Free
 Group:		Networking
 Source0:	http://www.h5l.org/dist/src/%{name}-%{version}.tar.gz
@@ -39,6 +39,7 @@
 Patch13:	%{name}-hdb-ldap-module.patch
 Patch14:	%{name}-cpp-safe.patch
 Patch15:	%{name}-ntlm-digest.patch
+Patch16:	%{name}-use_dns.patch
 URL:		http://www.h5l.org/
 BuildRequires:	autoconf >= 2.62
 BuildRequires:	automake
@@ -353,6 +354,7 @@
 %patch13 -p1
 %patch14 -p1
 %patch15 -p1
+%patch16 -p1
 
 %build
 rm -f acinclude.m4 cf/{libtool,lt*}.m4
@@ -778,6 +780,9 @@
 All persons listed below can be reached at <cvs_login>@pld-linux.org
 
 $Log$
+Revision 1.190  2009/12/14 10:49:06  baggins
+- fix regression in _gsskrb5_acquire_cred
+
 Revision 1.189  2009/12/10 14:41:14  baggins
 - removed blocker, it turns out that GSSAPI now hates CNAME,
   if you see "Decrypt integrity check failed" that means "Use The <A> Luke!"

================================================================
Index: packages/heimdal/heimdal-use_dns.patch
diff -u /dev/null packages/heimdal/heimdal-use_dns.patch:1.1
--- /dev/null	Mon Dec 14 11:49:11 2009
+++ packages/heimdal/heimdal-use_dns.patch	Mon Dec 14 11:49:06 2009
@@ -0,0 +1,21 @@
+commit 9f5772050b4094ed3e4803d3d1bf5c57a732d2b2
+Author: Love Hornquist Astrand <lha at h5l.org>
+Date:   Sun Dec 13 22:55:36 2009 -0800
+
+    Match old code and use krb5_sname_to_principal on the imported name for acquire cred.
+    
+    Reported by Jan Rekorajski
+
+diff --git a/lib/gssapi/krb5/acquire_cred.c b/lib/gssapi/krb5/acquire_cred.c
+index 696171d..7e448dc 100644
+--- a/lib/gssapi/krb5/acquire_cred.c
++++ b/lib/gssapi/krb5/acquire_cred.c
+@@ -339,7 +339,7 @@ OM_uint32 _gsskrb5_acquire_cred
+ 
+     if (desired_name != GSS_C_NO_NAME) {
+ 
+-	ret = _gsskrb5_canon_name(minor_status, context, 0, NULL,
++	ret = _gsskrb5_canon_name(minor_status, context, 1, NULL,
+ 				  desired_name, &handle->principal);
+ 	if (ret) {
+ 	    HEIMDAL_MUTEX_destroy(&handle->cred_id_mutex);
================================================================

---- CVS-web:
    http://cvs.pld-linux.org/cgi-bin/cvsweb.cgi/packages/heimdal/heimdal.spec?r1=1.189&r2=1.190&f=u



More information about the pld-cvs-commit mailing list