Alerts This Week
Warning Icon 1 714
Alerts This Week
Warning Icon 1 714

Fedora 40: 2025-61b9344baf important: kernel segmentation fault remedy

fedora
Calendar Grey February 15, 2025
Dist Fedora Esm H88
The update for Fedora's krb5 addresses critical vulnerabilities, including potential memory corruption, significantly bolstering secure authentication protocols.
Prevent overflow when calculating ulog block size (CVE-2025-24528) Support PKCS11 EC client certs in PKINIT kdb5_util: fix DB entry flags on modification Add ECDH support for PKINI...

Summary

Kerberos V5 is a trusted-third-party network authentication system,

which can improve your network's security by eliminating the insecure

practice of sending passwords over the network in unencrypted form.

Update Information:

Prevent overflow when calculating ulog block size (CVE-2025-24528) Support PKCS11 EC client certs in PKINIT kdb5_util: fix DB entry flags on modification Add ECDH support for PKINIT (RFC5349)

Change Log

* Tue Feb 11 2025 Julien Rische - 1.21.3-3 - Prevent overflow when calculating ulog block size (CVE-2025-24528) Resolves: rhbz#2342810 - Support PKCS11 EC client certs in PKINIT Resolves: rhbz#2341962 - kdb5_util: fix DB entry flags on modification Resolves: rhbz#2336555 - Add ECDH support for PKINIT (RFC5349) Resolves: rhbz#2214326

References


[ 1 ] Bug #2214326 - [RFE] Add ECDH support for PKINIT (RFC5349) [fedora] https://bugzilla.redhat.com/show_bug.cgi?id=2214326 [ 2 ] Bug #2336555 - kdb5_util: fix DB entry flags on modification [fedora] https://bugzilla.redhat.com/show_bug.cgi?id=2336555 [ 3 ] Bug #2341962 - Support PKCS11 EC client certs in PKINIT [fedora] https://bugzilla.redhat.com/show_bug.cgi?id=2341962 [ 4 ] Bug #2342810 - CVE-2025-24528 krb5: overflow when calculating ulog block size [fedora-40] https://bugzilla.redhat.com/show_bug.cgi?id=2342810

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-61b9344baf' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

Severity
important
Lowest
Low
Medium
High
Critical

Name: krb5
Product: Fedora 40
Version: 1.21.3
Release: 3.fc40
Summary: The Kerberos network authentication system

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here