- 
    Thu May 05 2022 EL Errata <el-errata_ww@oracle.com> - 1.19.1-15.0.1
    
- Fixed race condition in krb5_set_password() [Orabug: 33609767]
   
  
  - 
    Mon Mar 14 2022 Julien Rische <jrische@redhat.com> - 1.19.1-15
    
- Use SHA-256 instead of SHA-1 for PKINIT CMS digest
   
  
  - 
    Thu Feb 24 2022 Julien Rische <jrische@redhat.com> - 1.19.1-14
    
- Bypass FIPS restrictions to use KRB5KDF in case AES SHA-1 HMAC is enabled
- Lazily load MD4/5 from OpenSSL if using RADIUS or RC4 enctype in FIPS mode
   
  
  - 
    Fri Dec 17 2021 Antonio Torres <antorres@redhat.com> - 1.19.1-13
    
- Remove -specs= from krb5-config output
- Resolves #1997021
   
  
  - 
    Wed Oct 20 2021 Antonio Torres <antorres@redhat.com> - 1.19.1-12
    
- Fix KDC null deref on TGS inner body null server (CVE-2021-37750)
- Resolves: #1997602
   
  
  - 
    Mon Aug 09 2021 Mohan Boddu <mboddu@redhat.com> - 1.19.1-11.1
    
- Rebuilt for IMA sigs, glibc 2.34, aarch64 flags
  Related: rhbz#1991688
   
  
  - 
    Tue Jul 20 2021 Robbie Harwood <rharwood@redhat.com> - 1.19.1-11
    
- Fix KDC null deref on bad encrypted challenge (CVE-2021-36222)
- Resolves: #1983733
   
  
  - 
    Wed Jul 14 2021 Robbie Harwood <rharwood@redhat.com> - 1.19.1-10
    
- Update OpenSSL 3 provider handling to clean up properly
- Resolves: #1955873
   
  
  - 
    Mon Jun 21 2021 Robbie Harwood <rharwood@redhat.com> - 1.19.1-9
    
- Sync openssl3 patches with upstream
- Resolves: #1955873
   
  
  - 
    Thu Jun 17 2021 Robbie Harwood <rharwood@redhat.com> - 1.19.1-8
    
- Rebuild for rpminspect and mass rebuild cleanup; no code changes
- Resolves: #1967505