Release date:
2026-09-17 11:51:57 UTC
Description:
- CVE-2018-5709: bounds-check key and name counts when loading a KDB dump
- CVE-2020-28196: add recursion limit for ASN.1 indefinite lengths
- CVE-2021-36222: fix KDC null deref on bad encrypted challenge
- CVE-2022-42898: fix integer overflows in PAC parsing
- CVE-2024-37370: verify the Extra Count field of CFX wrap tokens
- CVE-2024-37371: reject GSS message tokens with invalid length fields
- Bound dbentry->e_length when loading a KDB dump (upstream a9654198); the
last unguarded 32-to-16-bit assignment in the function CVE-2018-5709
bounds
- Validate the PAC length in mspac_internalize() (upstream 63ae6a8d); the
serialized length reaching krb5_pac_parse() was unchecked. Adds the internal
helper k5_ser_unpack_len to libkrb5.exports, as upstream does; no public
interface changes
- Carry the t_invalid.c regression tests from upstream 55fbf435, split across
the CVE-2024-37370 and CVE-2024-37371 patches to match the code split.
test_cfx_altered_ec is the case that fails without the 37370 fix and
test_cfx_large_ec the one that fails without the 37371 fix; the other two
carried cases do not discriminate on 1.17 and are noted as such in the
patch headers. Test-only: no shipped binary changes
Updated packages:
-
alt-krb5-devel-1.17-14.el9.x86_64.rpm
sha:5477c1bc81a8c5ed10cc1082524a3e58e8184e973bf8cc8221248ba9c8a2c539
-
alt-krb5-libs-1.17-14.el9.x86_64.rpm
sha:f00a9169172715b39016b04cc02e52c3d3a8c3cef319a8ed9bf0433566a39782
-
alt-krb5-pkinit-1.17-14.el9.x86_64.rpm
sha:8564175da4d2d7a2cae0d0425f66bc6670f2d6773a443048beea5d134c0224b1
-
alt-krb5-server-1.17-14.el9.x86_64.rpm
sha:afb59b057e6c6ebca3c3f101d28b78418914d5f5b49b999be3470917d4b7bc30
-
alt-krb5-server-ldap-1.17-14.el9.x86_64.rpm
sha:8e754f5970c3096e0a28d36cdc6e629f866d29fee2f3eee29a1788ca8e3a5d24
-
alt-krb5-workstation-1.17-14.el9.x86_64.rpm
sha:0f30a2c141465a6f848edaed4ef0fde912bef9a549d3bcb644c200525e92fd76
-
alt-libkadm5-1.17-14.el9.x86_64.rpm
sha:8be1a37290c8146a1a07afc66a4ae8bb0ecfa130f743075be0748fa2d3ef9acb
Notes:
This page is generated automatically and has not been checked for errors. For clarification or
corrections please contact the
CloudLinux Packaging Team.