[16918] in Kerberos-V5-bugs

home help back first fref pref prev next nref lref last post

[krbdev.mit.edu #9111] git commit

daemon@ATHENA.MIT.EDU (Greg Hudson via RT)
Mon Mar 18 21:20:28 2024

From: "Greg Hudson via RT" <rt-comment@krbdev.mit.edu>
In-Reply-To: 
Message-ID: <rt-4.4.3-2-2090649-1710811214-1406.9111-4-0@mit.edu>
To: "AdminCc of krbdev.mit.edu Ticket #9111":;
Date: Mon, 18 Mar 2024 21:20:14 -0400
MIME-Version: 1.0
Reply-To: rt-comment@krbdev.mit.edu
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Errors-To: krb5-bugs-bounces@mit.edu


Mon Mar 18 21:20:14 2024: Request 9111 was acted upon.
 Transaction: Ticket created by ghudson@mit.edu
       Queue: krb5
     Subject: git commit
       Owner: ghudson@mit.edu
  Requestors: 
      Status: new
 Ticket <URL: https://krbdev.mit.edu/rt/Ticket/Display.html?id=9111 >



Correct PKINIT EC cert signature metadata

When generating CMS SignedData in PKINIT, check the certificate's
public key type and set the signatureAlgorithm field appropriately.
(This field is currently ignored by OpenSSL when verifying CMS
SignedData.)

https://github.com/krb5/krb5/commit/bdcd6075bd4593c8f67722ce075c9519faec58b7
Author: Greg Hudson <ghudson@mit.edu>
Commit: bdcd6075bd4593c8f67722ce075c9519faec58b7
Branch: master
 src/plugins/preauth/pkinit/pkinit_crypto_openssl.c | 20 ++++++++++++++++++--
 1 file changed, 18 insertions(+), 2 deletions(-)

_______________________________________________
krb5-bugs mailing list
krb5-bugs@mit.edu
https://mailman.mit.edu/mailman/listinfo/krb5-bugs

home help back first fref pref prev next nref lref last post