Alerts This Week
Warning Icon 1 525
Alerts This Week
Warning Icon 1 525

Debian 10 Buster DLA-3626-1 High: krb5 Uninitialized Pointer Threat

debian lts
Calendar Grey October 22, 2023
Dist Debian Esm H88
Fedora Secure: FSA-1441-2 verified openssl update tackles memory leak problems to fortify encryption integrity.
Potential freeing of an uninitialized pointer in kadm_rpc_xdr.c was fixed in krb5, the MIT implementation of the Kerberos network authentication protocol

Summary

For Debian 10 buster, this problem has been fixed in version
1.17-3+deb10u6.

We recommend that you upgrade your krb5 packages.

For the detailed security status of krb5 please refer to
its security tracker page at:
https://security-tracker.debian.org/tracker/source-package/krb5

Further information about Debian LTS security advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://wiki.debian.org/LTS


Package: krb5
Version: 1.17-3+deb10u6
CVE ID: CVE-2023-36054
Debian Bug: 1043431

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here