vulnerability
Ubuntu: USN-7314-1 (CVE-2024-26458): Kerberos vulnerabilities
Severity | CVSS | Published | Added | Modified |
---|---|---|---|---|
5 | (AV:N/AC:L/Au:N/C:P/I:N/A:N) | 02/29/2024 | 03/04/2025 | 03/05/2025 |
Severity
5
CVSS
(AV:N/AC:L/Au:N/C:P/I:N/A:N)
Published
02/29/2024
Added
03/04/2025
Modified
03/05/2025
Description
Kerberos 5 (aka krb5) 1.21.2 contains a memory leak in /krb5/src/lib/rpc/pmap_rmt.c.
Solution(s)
ubuntu-upgrade-krb5-admin-serverubuntu-upgrade-krb5-kdcubuntu-upgrade-libgssapi-krb5-2ubuntu-upgrade-libgssrpc4ubuntu-upgrade-libgssrpc4t64ubuntu-upgrade-libkdb5-10ubuntu-upgrade-libkdb5-10t64ubuntu-upgrade-libkdb5-9
References
- CVE-2024-26458
- https://attackerkb.com/topics/CVE-2024-26458
- UBUNTU-USN-7314-1
- URL-https://github.com/LuMingYinDetect/krb5_defects/blob/main/krb5_detect_1.md
- URL-https://mailman.mit.edu/pipermail/kerberos/2024-March/023095.html
- URL-https://ubuntu.com/security/notices/USN-7314-1
- URL-https://www.cve.org/CVERecord?id=CVE-2024-26458

NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.