Release date:
2026-09-17 11:13:20 UTC
Description:
- CVE-2018-5709: bounds-check key and name counts when loading a KDB dump
- CVE-2020-28196: add recursion limit for ASN.1 indefinite lengths
- CVE-2021-36222: fix KDC null deref on bad encrypted challenge
- CVE-2022-42898: fix integer overflows in PAC parsing
- CVE-2024-37370: verify the Extra Count field of CFX wrap tokens
- CVE-2024-37371: reject GSS message tokens with invalid length fields
- Bound dbentry->e_length when loading a KDB dump (upstream a9654198); the
last unguarded 32-to-16-bit assignment in the function CVE-2018-5709
bounds
- Validate the PAC length in mspac_internalize() (upstream 63ae6a8d); the
serialized length reaching krb5_pac_parse() was unchecked. Adds the internal
helper k5_ser_unpack_len to libkrb5.exports, as upstream does; no public
interface changes
- Carry the t_invalid.c regression tests from upstream 55fbf435, split across
the CVE-2024-37370 and CVE-2024-37371 patches to match the code split.
test_cfx_altered_ec is the case that fails without the 37370 fix and
test_cfx_large_ec the one that fails without the 37371 fix; the other two
carried cases do not discriminate on 1.17 and are noted as such in the
patch headers. Test-only: no shipped binary changes
Updated packages:
-
alt-krb5-devel-1.17-14.el10.x86_64.rpm
sha:cbf029b1b4fe1b2f6165249dfb5380e55cfa17f15db16905a7b579a75a9b70df
-
alt-krb5-libs-1.17-14.el10.x86_64.rpm
sha:8207b42979eb981dd18127a592d4e92fbcbacc9386a0c3f0430f94f59817f439
-
alt-krb5-pkinit-1.17-14.el10.x86_64.rpm
sha:15a1b2059a33c0334b80ce1143ab79e06fe14e3f50058c3b5afeae9c923a10d2
-
alt-krb5-server-1.17-14.el10.x86_64.rpm
sha:ebcf05dffdf8fa6ef6b7eb2e553a19ed876b82ab52bc4b3afb6dd87189102372
-
alt-krb5-server-ldap-1.17-14.el10.x86_64.rpm
sha:d4daa13d2ce034dfb5a411f6cd9aa98f6423237da0a7d80c11f49639cf1a75b7
-
alt-krb5-workstation-1.17-14.el10.x86_64.rpm
sha:17bb1f93e33a2c7bb6dfff2c6124b77943fde3694321e76d9d99856684ab1a15
-
alt-libkadm5-1.17-14.el10.x86_64.rpm
sha:e9f2e02088ced9f24260adedb0a6b3bf7ffb05386a918cb480ab1044c45313ae
Notes:
This page is generated automatically and has not been checked for errors. For clarification or
corrections please contact the
CloudLinux Packaging Team.