krb5-1.21.1-3.el9

エラータID: AXSA:2024-9086:08

Release date: 
Wednesday, December 11, 2024 - 17:02
Subject: 
krb5-1.21.1-3.el9
Affected Channels: 
MIRACLE LINUX 9 for x86_64
Severity: 
Moderate
Description: 

Kerberos is a network authentication system, which can improve the security of your network by eliminating the insecure practice of sending passwords over the network in unencrypted form. It allows clients and servers to authenticate to each other with the help of a trusted third party, the Kerberos key distribution center (KDC).

Security Fix(es):

* krb5: Memory leak at /krb5/src/lib/rpc/pmap_rmt.c (CVE-2024-26458)
* krb5: Memory leak at /krb5/src/lib/gssapi/krb5/k5sealv3.c (CVE-2024-26461)
* krb5: Memory leak at /krb5/src/kdc/ndr.c (CVE-2024-26462)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Additional Changes:

For detailed information on changes in this release, see the MIRACLE LINUX 9.5 Release Notes linked from the References section.

CVE-2024-26458
Kerberos 5 (aka krb5) 1.21.2 contains a memory leak in /krb5/src/lib/rpc/pmap_rmt.c.
CVE-2024-26461
Kerberos 5 (aka krb5) 1.21.2 contains a memory leak vulnerability in /krb5/src/lib/gssapi/krb5/k5sealv3.c.
CVE-2024-26462
Kerberos 5 (aka krb5) 1.21.2 contains a memory leak vulnerability in /krb5/src/kdc/ndr.c.

Solution: 

Update packages.

Additional Info: 

N/A

Download: 

SRPMS
  1. krb5-1.21.1-3.el9.src.rpm
    MD5: ff27f498444b8baa21e4b51974f8d257
    SHA-256: be2b64c5df8c8710491ed28a85eb05ff86b4c07c7e4c1c3b63a3c00113ba4a1b
    Size: 8.42 MB

Asianux Server 9 for x86_64
  1. krb5-devel-1.21.1-3.el9.i686.rpm
    MD5: 53af92a12e117770ea84ebc26e969e19
    SHA-256: f1a8e1bc4f69a11c17dc50d8f4c84a5541bb4bb57f8082bfcfeda71101ad48a5
    Size: 145.30 kB
  2. krb5-devel-1.21.1-3.el9.x86_64.rpm
    MD5: fcf8219efc7675c562aea9f695b41fff
    SHA-256: 2af4f8fc95fcd7aa6da1600ffb921ea2c67560fc608a8ae5cb32b309d95c0b9c
    Size: 145.33 kB
  3. krb5-libs-1.21.1-3.el9.i686.rpm
    MD5: 075dfd86628e76ac4a95311e19cdddf9
    SHA-256: 5f5fe26272dc8646d5c9fbd8434c2fb4ee3a50ce47a954d71a0c9df77eff95f1
    Size: 810.31 kB
  4. krb5-libs-1.21.1-3.el9.x86_64.rpm
    MD5: 69efaf621e1284aa7208ea3298170d11
    SHA-256: 9fe07935a3aefb3518f4a8a66e7a08e862dd5c2e91c63d14ee1a28e59df96291
    Size: 760.64 kB
  5. krb5-pkinit-1.21.1-3.el9.i686.rpm
    MD5: c3b65dbddce37a2800d2f5288e54f298
    SHA-256: 9778f9e4eb693b4c9287c0317818f66a953738b1c8af233bacfda3e7de136191
    Size: 63.52 kB
  6. krb5-pkinit-1.21.1-3.el9.x86_64.rpm
    MD5: a13aa6dd8a38e60af9ab85ad1c77b1a4
    SHA-256: a29103cc658c0e31ee2db61533ae6cc00a05d3a8522bfe83ccc9caf588a50628
    Size: 58.25 kB
  7. krb5-server-1.21.1-3.el9.i686.rpm
    MD5: 1d9bfa948c44c4dfee08dba4f6cdcf8c
    SHA-256: 5251ced0b8ed2683652ebdcbdaed0e7a4bdb0d4615e504d56f5755c8a20e393c
    Size: 315.56 kB
  8. krb5-server-1.21.1-3.el9.x86_64.rpm
    MD5: 673ccd9e7ce01b9b0985c130baec0685
    SHA-256: 14f83da2575aff7c20011cdd0e15e6d1a42d19bf18987867aaa1bf4217f235d8
    Size: 303.15 kB
  9. krb5-server-ldap-1.21.1-3.el9.i686.rpm
    MD5: b1cb2c2e3a7b658ef31725f2e39806f7
    SHA-256: fa5968dd9a7805ef5c378313a7e6d4fefb61d8d181b286280d1413ca461ed288
    Size: 94.03 kB
  10. krb5-server-ldap-1.21.1-3.el9.x86_64.rpm
    MD5: b7189a5cba8dd618488b302cfb4de9c0
    SHA-256: 7c5f8595ce25c07ac45b29a2f760aba55be872b7af6a0807c6e2654708b29c48
    Size: 89.50 kB
  11. krb5-workstation-1.21.1-3.el9.x86_64.rpm
    MD5: 75f100033eeebfaa86bd76c93bfac3b6
    SHA-256: 83d2c48a8dcdc2499bb603b8d0a17e4c060569189e67064119e042a8e43d2072
    Size: 532.90 kB
  12. libkadm5-1.21.1-3.el9.i686.rpm
    MD5: 0680cef30e5476b8a772d17b52982aa4
    SHA-256: 868df475c33807020fc2e51670b0860884005bc8328b25bf15cf654bd3df96f4
    Size: 79.98 kB
  13. libkadm5-1.21.1-3.el9.x86_64.rpm
    MD5: d08e3b1818861735b2313c81087a35c6
    SHA-256: d0f1608caea171aa8d7291bf5158b56b32e98e706f0392fdadb57c622b04fe12
    Size: 76.12 kB