Uploaded image for project: 'RHEL'
  1. RHEL
  2. RHEL-76758

Prevent overflow when calculating ulog block size (CVE-2025-24528) [rhel-10]

    • Icon: Bug Bug
    • Resolution: Unresolved
    • Icon: Undefined Undefined
    • rhel-10.0
    • rhel-10.0
    • krb5
    • krb5-1.21.3-7.el10
    • No
    • Moderate
    • 1
    • rhel-sst-idm-ipa
    • ssg_idm
    • 2
    • False
    • Hide

      None

      Show
      None
    • None
    • 2025-Q1-Bravo-S2
    • Requested
    • None
    • None

      In MIT krb5 release 1.7 and later with incremental propagation enabled, an authenticated attacker can cause kadmind to write beyond the end of the mapped region for the iprop log file, likely causing a process crash.

              jrische@redhat.com Julien Rische
              jrische@redhat.com Julien Rische
              Julien Rische Julien Rische
              Michal Polovka Michal Polovka
              Votes:
              0 Vote for this issue
              Watchers:
              3 Start watching this issue

                Created:
                Updated: