Alerts This Week
Warning Icon 1 626
Alerts This Week
Warning Icon 1 626

Warning: Undefined array key "Description" in /var/www/www.linuxsecurity.com-443/html/lsadvisories/lsadvisories.php on line 220

Fedora 43 libgsasl Critical DoS Out Of Bounds 2026-5317df36be

fedora
Calendar Grey April 4, 2026
Dist Fedora Esm H88
Critical advisory for Fedora 43 libgsasl to resolve out of bounds read leading to DoS.
GSSAPI server: Boundary check gss_wrap token (read OOB)

Summary

The library includes support for the SASL framework

and at least partial support for the CRAM-MD5, EXTERNAL,

GSSAPI, ANONYMOUS, PLAIN, SECURID, DIGEST-MD5, LOGIN,

and NTLM mechanisms.

Update Information:

GSSAPI server: Boundary check gss_wrap token (read OOB)

Change Log

* Thu Mar 26 2026 Peter Lemenkov - 1.10.0-15 - Fix CVE-2022-2469 * Fri Jan 16 2026 Fedora Release Engineering - 1.10.0-14 - Rebuilt for https://fedoraproject.org/wiki/Fedora_44_Mass_Rebuild

References


[ 1 ] Bug #2119154 - CVE-2022-2469 libgsasl: Out of bounds read causes DoS [fedora-43] https://bugzilla.redhat.com/show_bug.cgi?id=2119154

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-5317df36be' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

Severity
critical
Lowest
Low
Medium
High
Critical

Name: libgsasl
Product: Fedora 43
Version: 1.10.0
Release: 15.fc43
Summary: GNU SASL library

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here