Alerts This Week
Warning Icon 1 815
Alerts This Week
Warning Icon 1 815

Debian 11 gsasl High Denial of Service Vulnern DLA-4618-1 CVE-2026-48829

debian lts
Calendar Grey June 5, 2026
Dist Debian Esm H88
Fixes a denial of service flaw in the GNU SASL library gsasl for Debian 11 bullseye.
It was discovered that missing input sanitising in the DIGEST-MD5 parser of the GNU SASL library could result in denial of service

Summary

It was discovered that missing input sanitising in the DIGEST-MD5 parser
of the GNU SASL library could result in denial of service.


For Debian 11 bullseye, this problem has been fixed in version
1.10.0-4+deb11u2.

We recommend that you upgrade your gsasl packages.

For the detailed security status of gsasl please refer to
its security tracker page at:
https://security-tracker.debian.org/tracker/gsasl

Further information about Debian LTS security advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://wiki.debian.org/LTS



Severity
high
Lowest
Low
Medium
High
Critical

Package: gsasl
Version: 1.10.0-4+deb11u2
CVE ID: CVE-2026-48829

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here