Several security issues were fixed in Kerberos.. ========================================================================== Ubuntu Security Notice USN-7314-1 March 03, 2025 krb5 vulnerabilities ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 24.10 - Ubuntu 24.04 LTS - Ubuntu 22.04 LTS - Ubuntu 20.04 LTS Summary: Several security issues were fixed in Kerberos. Software Description: - krb5: MIT Kerberos Network Authentication Protocol Details: It was discovered that Kerberos incorrectly handled certain memory operations. A remote attacker could possibly use this issue to cause Kerberos to consume memory,leading to a denial of service. (CVE-2024-26458, CVE-2024-26461) It was discovered that Kerberos incorrectly handled certain memory operations. A remote attacker could possibly use this issue to cause Kerberos to consume memory,leading to a denial of service. This issue only affected Ubuntu 24.04 LTS. (CVE-2024-26462) It was discovered that the Kerberos kadmind daemon incorrectly handled log files when incremental propagation was enabled. An authenticated attacker could use this issue to cause kadmind to crash, resulting in a denial of service, or possibly execute arbitrary code. (CVE-2025-24528) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 24.10 krb5-admin-server 1.21.3-3ubuntu0.2 krb5-kdc 1.21.3-3ubuntu0.2 libgssapi-krb5-2 1.21.3-3ubuntu0.2 libgssrpc4t64 1.21.3-3ubuntu0.2 libkdb5-10t64 1.21.3-3ubuntu0.2 Ubuntu 24.04 LTS krb5-admin-server 1.20.1-6ubuntu2.5 krb5-kdc 1.20.1-6ubuntu2.5 libgssapi-krb5-2 1.20.1-6ubuntu2.5 libgssrpc4t64 1.20.1-6ubuntu2.5 libkdb5-10t64 1.20.1-6ubuntu2.5 Ubuntu 22.04 LTS krb5-admin-server 1.19.2-2ubuntu0.6 krb5-kdc 1.19.2-2ubuntu0.6 libgssapi-krb5-2 1.19.2-2ubuntu0.6 libgssrpc4 1.19.2-2ubuntu0.6 libkdb5-10 1.19.2-2ubuntu0.6 Ubuntu 20.04 LTS krb5-admin-server 1.17-6ubuntu4.9 krb5-kdc 1.17-6ubuntu4.9 libgssapi-krb5-2 1.17-6ubuntu4.9 libgssrpc4 1.17-6ubuntu4.9 libkdb5-9 1.17-6ubuntu4.9 In general, a standard system update will make all the necessary changes. References: https://ubuntu.com/security/notices/USN-7314-1 CVE-2024-26458, CVE-2024-26461, CVE-2024-26462, CVE-2025-24528 Package Information: https://launchpad.net/ubuntu/+source/krb5/1.21.3-3ubuntu0.2 https://launchpad.net/ubuntu/+source/krb5/1.20.1-6ubuntu2.5 https://launchpad.net/ubuntu/+source/krb5/1.19.2-2ubuntu0.6 https://launchpad.net/ubuntu/+source/krb5/1.17-6ubuntu4.9 . Alert Bulletin USN-7314-1 highlights various Kerberos vulnerabilities impacting different Ubuntu releases, detailing essential patches delivered.. krb5 security, Ubuntu security, memory issue, denial of service. . Severity: Critical. LinuxSecurity.com Team
MIT krb5 a popular implementation of Kerberos 5 protocol was affected by a vulnerability. An authenticated attacker can cause kadmind to write beyond . - ------------------------------------------------------------------------- Debian LTS Advisory DLA-4065-1
It was discovered that the MIT-SHM extension of X.org did not correctly validate the location of memory during an image copy. An authenticated attacker could exploit this to read arbitrary memory locations within X, exposing sensitive information. (CVE-2008-1379) . =========================================================== Ubuntu Security Notice USN-616-1 June 13, 2008 xorg-server vulnerabilities CVE-2008-1377, CVE-2008-1379, CVE-2008-2360, CVE-2008-2361, CVE-2008-2362 ========================================================== A security issue affects the following Ubuntu releases: Ubuntu 6.06 LTS Ubuntu 7.04 Ubuntu 7.10 Ubuntu 8.04 LTS This advisory also applies to the corresponding versions of Kubuntu, Edubuntu, and Xubuntu. The problem can be corrected by upgrading your system to the following package versions: Ubuntu 6.06 LTS: xserver-xorg-core 1:1.0.2-0ubuntu10.13 Ubuntu 7.04: xserver-xorg-core 2:1.2.0-3ubuntu8.4 Ubuntu 7.10: xserver-xorg-core 2:1.3.0.0.dfsg-12ubuntu8.4 Ubuntu 8.04 LTS: xserver-xorg-core 2:1.4.1~git20080131-1ubuntu9.2 After a standard system upgrade you need to restart your session to effect the necessary changes. Details follow: Multiple flaws were found in the RENDER, RECORD, and Security extensions of X.org which did not correctly validate function arguments. An authenticated attacker could send specially crafted requests and gain root privileges or crash X. (CVE-2008-1377, CVE-2008-2360, CVE-2008-2361, CVE-2008-2362) It was discovered that the MIT-SHM extension of X.org did not correctly validate the location of memory during an image copy. An authenticated attacker could exploit this to read arbitrary memory locations within X, exposing sensitive information. (CVE-2008-1379) Updated packages for Ubuntu 6.06 LTS: Source archives: Size/MD5: 39581 1cc6de7a91afcb8ae513101096dc0110 Size/MD5: 1844d6899f9c9e9e3249ac4ea603d07e07ec Size/MD5: 7966941 f44f0f07136791ed7a4028bd0dd5eae3 amd64 architecture (Athlon64, Opteron, EM64T Xeon): Size/MD5: 1415724 96678c9ce9bf9459f6cd39e5514563bc Size/MD5: 4049514 6da96a95e08c7b8769e56db3daec7854 Size/MD5: 295584 0c3e5b9af31d859ada657ceec64d5ae4 Size/MD5: 1566316 57803aab7dcef2e7a1dc76c70e3f54f9 Size/MD5: 50964 bada644f3ed4bf8f39ccc14cadc0b0c7 Size/MD5: 849624 19504a25ab36164f87194e91ec45a18a i386 architecture (x86 compatible Intel/AMD): Size/MD5: 1243138 4cff9fde0f33d907e38c2d2bafdcf1e0 Size/MD5: 3532986 86a2c32ad4bce927ba04de80a27eabff Size/MD5: 295610 646794d189d793a654dc040b5387c4f1 Size/MD5: 1384138 86167d4aae1b3332c3b2dcb3007d752f Size/MD5: 43486 073f4a966c39ae5a2e424b70ae55ba69 Size/MD5: 750030 76cf6e5a34da3c1836e4493d77a184e2 powerpc architecture (Apple Macintosh G3/G4/G5): Size/MD5: 1370038 2f49af20cd1bb5ccc6c28cff1b664edb Size/MD5: 4076470 c70ef04e91dba17b33585619dc6e3387 Size/MD5: 295614 65c0a60874f2ee91bdc07f8e3e1f60a8 Size/MD5: 1507984 66aa6e9f8d2892bc9be3e5cded3ea295 Size/MD5: 56138 0b72d9eccce5f6090125c23303fabde2 Size/MD5: 826780 65a7f7bd1d9d875382e7608d76a77c70 sparc architecture (Sun SPARC/UltraSPARC): Size/MD5: 1315088 9cf71240fbe395931979ae62b5b19c2c Size/MD5: 3790678 034790f4771918e92c2e28e3b319e843 Size/MD5: 295950 5ca2778fc0e49993f1c38b4aff709bbf Size/MD5: 1447214 123d36a19cd589f326281e627a7a94c6 Size/MD5: 44894 52179c5bf10b6e3a7a7199f34a4100bc Size/MD5: 759828 47923797f4f612601b372a1805d472e8 Updated packages for Ubuntu 7.04: Source archives: Size/MD5: 463824 7eaa0fd6fa9cbdfbd21392e8f78d1489 Size/MD5: 2155 3db5a2926b0553256c6cb1641afa5887 Size/MD5: 81068298cc04a469a7d3911441ac9028c13bcb6 amd64 architecture (Athlon64, Opteron, EM64T Xeon): Size/MD5: 1490632 361a7381309d1851de07c26f1601fef1 Size/MD5: 3937688 096c7370744ef3dc6b716d06cc4315f2 Size/MD5: 296864 5ff1c92c2750a7115f8dea0a93e89e56 Size/MD5: 1645052 3793e0ec68341273021706369e13e03e Size/MD5: 96048 44949bd629a71723610b5069e14e991c Size/MD5: 866840 7156a6264e3f48f2b20db4f672a6bd59 Size/MD5: 1676758 8d0e8b78d5e2c2aba389a8834e4c8671 i386 architecture (x86 compatible Intel/AMD): Size/MD5: 1386200 46242490779cbb2dcec736633b914ad6 Size/MD5: 3627946 ba7f5b3b744b9a25f427f6ff12cabcaa Size/MD5: 296858 a044cdfc6893c3c7bb10e42779eebd49 Size/MD5: 1535366 ac5a829203c4d832af67d67d667d0bae Size/MD5: 84956 399d30d8e442637fa1dc48234f36d398 Size/MD5: 800844 e8eb2b4dab5dc60431b1807a442f117e Size/MD5: 1561370 ee7cafbaf94fd2cabfd7fc6c5292c37a powerpc architecture (Apple Macintosh G3/G4/G5): Size/MD5: 1460942 7e878325d1bb1b0cd2bbf28140f33341 Size/MD5: 4057486 e4d5b83d83b924b3d021c74af221b07f Size/MD5: 296842 1cfcf1174d0cf61c16f24c8fa2005d03 Size/MD5: 1599094 ce8efdbf6c2db41e407d02f75a12141a Size/MD5: 109140 50733a4c7534668ed9cca21c9cb87fe6 Size/MD5: 853816 6000949218c9d23901fe567e0509730a Size/MD5: 1626496 7ee893146747c6a56803cac52f78219d sparc architecture (Sun SPARC/UltraSPARC): Size/MD5: 1405890 53ed2736a04701b9ad282f50cac620d6 Size/MD5: 3719882 44ecab6224f0cfd1c53e46be76110756 Size/MD5: 297184 b0969817c1d2fe58890c8eb0aa5a9175 Size/MD5: 1540212 5c80be7fc6fa75b53d16a840abc2ad78 Size/MD5: 87856 aecd31a4c4c950dbd80d725ff185ea7f Size/MD5: 785512 44749df289a193a3bcc8a08960653afe Size/MD5: 1566134 1c1b03b2ddb13f5bdb8172eede67b75e Updated packages for Ubuntu7.10: Source archives: Size/MD5: 821532 5ecb625489b3a2ceab7a6c199e75c499 Size/MD5: 2464 e86dc34c2dd1f2ead04c3891afcc9973 Size/MD5: 7995168 cbbc69f99b93172fde667f1241b5d5a4 Architecture independent packages: Size/MD5: 274452 a0a636d523324de9e4e7cd18b93b4337 amd64 architecture (Athlon64, Opteron, EM64T Xeon): Size/MD5: 1511578 37ce03ce5dd6dbb917ce02bd006d64d7 Size/MD5: 1702964 b5acb7f4231e1aca7031b9379934b32e Size/MD5: 12743160 aee0ff909918dc640bf3db97cb276a2e Size/MD5: 3993730 6cdd8825ff737548fed35aaa48f87a68 Size/MD5: 322010 753f5e4c19b65ebfc3c634857383f92e Size/MD5: 1667310 484619f5bb33a5c7d56cb96213af5f55 Size/MD5: 107210 c0561c9605a073878b1142bad86ac90a Size/MD5: 882976 316581f7cfce6e7691e27581c0a4ad70 Size/MD5: 1723584 2948fe6e985e3496d7b89720d2311078 i386 architecture (x86 compatible Intel/AMD): Size/MD5: 1407700 dea30db61c89aac968477daf5029a541 Size/MD5: 1587714 f75465f7ac1a54f0eea5ef95770a32b3 Size/MD5: 12385604 064c1494ca2a9da877902f736b565a12 Size/MD5: 3676408 eb0f5584b73d104ce31638da3d0aeeff Size/MD5: 322034 ac236da39470f95f4c45d97d087f7279 Size/MD5: 1557528 680334444970bc435daba6b58bba2acd Size/MD5: 94800 e4b061b9e0f0ae33150d06b86399d277 Size/MD5: 817936 d52a65a132ffd77f1924a9a470bd1b15 Size/MD5: 1621984 5f69a4fea02acdccbf608becd40b197a lpia architecture (Low Power Intel Architecture): Size/MD5: 1375020 c983d2b6d12acdc681493c5b27277576 Size/MD5: 1555816 e6d7705d34e3840eba8cd25ee8dc29a4 Size/MD5: 12315956 069cf5cc71ca1300a6dc0e91f27d4ef9 Size/MD5: 3648676 94a836b7550e3afefd15558dd7ed311a Size/MD5: 322018 469ded20697dee1c3d843036dc0dbf6c Size/MD5: 1526290 e98cfc061392845f5804041f25447cd8 Size/MD5: 94898ac929d8f411014301ba1b12d06ac1e56 Size/MD5: 815266 7ac2ca673f43e5a6ea9b02c8b6ce1fe1 Size/MD5: 1592036 c702793194c3825793b4b19d6997e9e0 powerpc architecture (Apple Macintosh G3/G4/G5): Size/MD5: 1486608 b0192f4e366040ef39bc30bbc7cc835c Size/MD5: 1656724 7f0e3bc09df580963bbc395aec5744b2 Size/MD5: 13010534 2bdfed70e1bd149e446230d652b5afda Size/MD5: 4099938 0be6b93c3fcd000526f71be5843dbcc7 Size/MD5: 322040 4f5e02d6c01ce9d77b1e6092706ec65c Size/MD5: 1625454 719dd4fa4f5b26b20a705ec6fe80bf61 Size/MD5: 120272 932979ee0669cc4c727e8be585d806aa Size/MD5: 869078 e25501f85158e5fa02ed6d04b84688ad Size/MD5: 1653928 274a83f9c6d058f6f701508c2e3b8edc sparc architecture (Sun SPARC/UltraSPARC): Size/MD5: 1425186 1e309b8f8cc4bb81489f0c3814c58cd1 Size/MD5: 1588422 cfe83e56fc28b8678eeb4d7ed410e494 Size/MD5: 12374074 3d7d7fee09793eb3e17a0f88d20020a3 Size/MD5: 3771402 42a41ca56feef272fdf33d14e0080516 Size/MD5: 322376 c51b84feb46c298364600b58a0d98851 Size/MD5: 1558814 63a113c48fc0da8d8897419db2c524de Size/MD5: 98248 19e9769887f4e516b7826b7ff7b7e5ca Size/MD5: 800678 cb60155226b2bf69f20aa9f66b30034e Size/MD5: 1586250 4b4c6bc45e282768c9a31042c4d49110 Updated packages for Ubuntu 8.04 LTS: Source archives: Size/MD5: 733446 06322355d52fccc69225539406e6ce4f Size/MD5: 2593 c4fa9b850bd0d301e73c02573755bdde Size/MD5: 8351532 37e6ba2cfa89e0018b35e0d0746ee00f amd64 architecture (Athlon64, Opteron, EM64T Xeon): Size/MD5: 1883864 93047e47d55ede5fbb08831019b36c1e Size/MD5: 2040524 b8eef3bdb9414ee2e34cb5f427a3b14f Size/MD5: 13005410 48bbb962f79ca9aa5ca2e82762bcb4d4 Size/MD5: 4423530 b3e96b0dfb51f83b0eaecbedefdd5134 Size/MD5: 694798 2252992485592e198a1601d3715139d3 Size/MD5: 1997322 bb3c82ec5fd244f647d2ef1b4f5290b7 i386 architecture (x86 compatible Intel/AMD): Size/MD5: 1771440 bceae9cc0d88385770db7d9d66938907 Size/MD5: 1920032 c0d07019c92142d81e11fe2686367c70 Size/MD5: 12622406 8bac59b5c70753a73a88cc372aacb4d7 Size/MD5: 4076100 bb4efe1273015c7efc272af3e29fcfcd Size/MD5: 694808 091301100d79b7af87d92e7ef6063457 Size/MD5: 1883326 f03568e6e6532b7268d29445fd7997aa lpia architecture (Low Power Intel Architecture): Size/MD5: 1750960 e69d06c5d86ee67ea1cc34f35e6ea052 Size/MD5: 1900132 cadda5e853446215c5188a33dac83f43 Size/MD5: 12690290 e95e2fd2c04eac0512d3a5b7e9d87f35 Size/MD5: 4061576 70a111d1b3fadf37e9178d29e9af092f Size/MD5: 694796 12a7f8630ee43ca5b5892309fd9b6abe Size/MD5: 1863136 92598dd013c97745a3661642a001d06b powerpc architecture (Apple Macintosh G3/G4/G5): Size/MD5: 1850692 732430255c00f714cdcac0c868efdaa5 Size/MD5: 2001552 455b492ba301da2079b9729426d34a73 Size/MD5: 13272612 d9fb6a69a087b313ca0cef42d3cfea84 Size/MD5: 4516124 662339980d543f3e6ecde771e6fb3531 Size/MD5: 694896 67b3b50138adde3ef546d0c8ca96b06f Size/MD5: 1962708 5f1cd07e5df33cad3163134e28c28b6d sparc architecture (Sun SPARC/UltraSPARC): Size/MD5: 1770914 e9b9c3d6c8c9c899fb6cfb4f094075cc Size/MD5: 1913476 4007c5e4de5645bd97ca88df14b5efe0 Size/MD5: 12636506 62287a5c153049088f1bbde0b487da8d Size/MD5: 4165840 7de265d6a60b5667747b2aea51ecfcb7 Size/MD5: 695188 bcebade24698b81c636927e855efc53e Size/MD5: 1877108 a974b78c3691c7f987c3b7fcf797ac2f . Ubuntu advisory USN-617-1 pertains to a vulnerability in the Linux kernel that could permit information leakage by users with valid credentials.. X11 Security, Ubuntu Risks, Image Processing, Notice Advisory. . Severity: Critical. LinuxSecurity.com Team
A system hardening measure could be bypassed.. =========================================================================Ubuntu Security Notice USN-4036-1 June 25, 2019 neutron vulnerability ========================================================================= A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 18.10 - Ubuntu 16.04 LTS Summary: A system hardening measure could be bypassed. Software Description: - neutron: OpenStack Virtual Network Service Details: Erik Olof Gunnar Andersson discovered that OpenStack Neutron incorrectly handled certain security group rules in the iptables firewall module. An authenticated attacker could possibly use this issue to block further application of security group rules for other instances. Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 18.10: python-neutron 2:13.0.2-0ubuntu3.4 python3-neutron 2:13.0.2-0ubuntu3.4 Ubuntu 16.04 LTS: python-neutron 2:8.4.0-0ubuntu7.4 In general, a standard system update will make all the necessary changes. References: https://ubuntu.com/security/notices/USN-4036-1 CVE-2019-9735 Package Information: https://launchpad.net/ubuntu/+source/neutron/2:13.0.2-0ubuntu3.4 https://launchpad.net/ubuntu/+source/neutron/2:8.4.0-0ubuntu7.4 . Ubuntu Security Advisory USN-4036-1 outlines a weakness in neutron that permits authenticated users to circumvent security protocols.. OpenStack Vulnerability, Ubuntu Security, Neutron Attack. . LinuxSecurity.com Team
USN-3242-1 introduced a regression in Samba.. =========================================================================Ubuntu Security Notice USN-3242-2 March 30, 2017 samba regression ========================================================================= A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 16.10 - Ubuntu 16.04 LTS - Ubuntu 14.04 LTS - Ubuntu 12.04 LTS Summary: USN-3242-1 introduced a regression in Samba. Software Description: - samba: SMB/CIFS file, print, and login server for Unix Details: USN-3242-1 fixed a vulnerability in Samba. The upstream fix introduced a regression when Samba is configured to disable following symbolic links. This update fixes the problem. Original advisory details: Jann Horn discovered that Samba incorrectly handled symlinks. An authenticated remote attacker could use this issue to access files on the server outside of the exported directories. Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 16.10: samba 2:4.4.5+dfsg-2ubuntu5.5 Ubuntu 16.04 LTS: samba 2:4.3.11+dfsg-0ubuntu0.16.04.6 Ubuntu 14.04 LTS: samba 2:4.3.11+dfsg-0ubuntu0.14.04.7 Ubuntu 12.04 LTS: samba 2:3.6.25-0ubuntu0.12.04.10 In general, a standard system update will make all the necessary changes. References: https://ubuntu.com/security/notices/USN-3242-2 https://ubuntu.com/security/notices/USN-3242-1 https://bugs.launchpad.net/ubuntu/+source/samba/+bug/1675698 Package Information: https://launchpad.net/ubuntu/+source/samba/2:4.4.5+dfsg-2ubuntu5.5 https://launchpad.net/ubuntu/+source/samba/2:4.3.11+dfsg-0ubuntu0.16.04.6 https://launchpad.net/ubuntu/+source/samba/2:4.3.11+dfsg-0ubuntu0.14.04.7 https://launchpad.net/ubuntu/+source/samba/2:3.6.25-0ubuntu0.12.04.10 . Ubuntu Security Notice USN-4321-1addresses a flaw in the OpenSSL package, impacting various distributions of Ubuntu.. Samba Security Advisory, Ubuntu Update, Samba Regression, USN-3242-2. . LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.