Kerberos is a network authentication protocol. It is designed to provide strong authentication for client/server applications by using secret-key cryptography.
Security Fix(es):
In MIT Kerberos 5 (aka krb5) before 1.22.3, there is a NULL pointer dereference if an application calls gssacceptseccontext() on a system with a NegoEx mechanism registered in /etc/gss/mech. An unauthenticated remote attacker can trigger this, causing the process to terminate in parsenego_message.(CVE-2026-40355)
In MIT Kerberos 5 (aka krb5) before 1.22.3, there is an integer underflow and resultant out-of-bounds read if an application calls gssacceptseccontext() on a system with a NegoEx mechanism registered in /etc/gss/mech. An unauthenticated remote attacker can trigger this, possibly causing the process to terminate in parsemessage.(CVE-2026-40356)
{
"severity": "Medium"
}{
"src": [
"krb5-1.18.2-23.oe2003sp4.src.rpm"
],
"aarch64": [
"krb5-1.18.2-23.oe2003sp4.aarch64.rpm",
"krb5-client-1.18.2-23.oe2003sp4.aarch64.rpm",
"krb5-debuginfo-1.18.2-23.oe2003sp4.aarch64.rpm",
"krb5-debugsource-1.18.2-23.oe2003sp4.aarch64.rpm",
"krb5-devel-1.18.2-23.oe2003sp4.aarch64.rpm",
"krb5-libs-1.18.2-23.oe2003sp4.aarch64.rpm",
"krb5-server-1.18.2-23.oe2003sp4.aarch64.rpm"
],
"x86_64": [
"krb5-1.18.2-23.oe2003sp4.x86_64.rpm",
"krb5-client-1.18.2-23.oe2003sp4.x86_64.rpm",
"krb5-debuginfo-1.18.2-23.oe2003sp4.x86_64.rpm",
"krb5-debugsource-1.18.2-23.oe2003sp4.x86_64.rpm",
"krb5-devel-1.18.2-23.oe2003sp4.x86_64.rpm",
"krb5-libs-1.18.2-23.oe2003sp4.x86_64.rpm",
"krb5-server-1.18.2-23.oe2003sp4.x86_64.rpm"
],
"noarch": [
"krb5-help-1.18.2-23.oe2003sp4.noarch.rpm"
]
}{
"src": [
"krb5-1.19.2-30.oe2203sp4.src.rpm"
],
"aarch64": [
"krb5-1.19.2-30.oe2203sp4.aarch64.rpm",
"krb5-client-1.19.2-30.oe2203sp4.aarch64.rpm",
"krb5-debuginfo-1.19.2-30.oe2203sp4.aarch64.rpm",
"krb5-debugsource-1.19.2-30.oe2203sp4.aarch64.rpm",
"krb5-devel-1.19.2-30.oe2203sp4.aarch64.rpm",
"krb5-libs-1.19.2-30.oe2203sp4.aarch64.rpm",
"krb5-server-1.19.2-30.oe2203sp4.aarch64.rpm"
],
"x86_64": [
"krb5-1.19.2-30.oe2203sp4.x86_64.rpm",
"krb5-client-1.19.2-30.oe2203sp4.x86_64.rpm",
"krb5-debuginfo-1.19.2-30.oe2203sp4.x86_64.rpm",
"krb5-debugsource-1.19.2-30.oe2203sp4.x86_64.rpm",
"krb5-devel-1.19.2-30.oe2203sp4.x86_64.rpm",
"krb5-libs-1.19.2-30.oe2203sp4.x86_64.rpm",
"krb5-server-1.19.2-30.oe2203sp4.x86_64.rpm"
],
"noarch": [
"krb5-help-1.19.2-30.oe2203sp4.noarch.rpm"
]
}{
"src": [
"krb5-1.21.2-20.oe2403sp1.src.rpm",
"krb5-1.21.2-20.oe2403sp3.src.rpm",
"krb5-1.21.2-20.oe2403.src.rpm"
],
"aarch64": [
"krb5-1.21.2-20.oe2403sp1.aarch64.rpm",
"krb5-client-1.21.2-20.oe2403sp1.aarch64.rpm",
"krb5-debuginfo-1.21.2-20.oe2403sp1.aarch64.rpm",
"krb5-debugsource-1.21.2-20.oe2403sp1.aarch64.rpm",
"krb5-devel-1.21.2-20.oe2403sp1.aarch64.rpm",
"krb5-libs-1.21.2-20.oe2403sp1.aarch64.rpm",
"krb5-server-1.21.2-20.oe2403sp1.aarch64.rpm",
"krb5-1.21.2-20.oe2403sp3.aarch64.rpm",
"krb5-client-1.21.2-20.oe2403sp3.aarch64.rpm",
"krb5-debuginfo-1.21.2-20.oe2403sp3.aarch64.rpm",
"krb5-debugsource-1.21.2-20.oe2403sp3.aarch64.rpm",
"krb5-devel-1.21.2-20.oe2403sp3.aarch64.rpm",
"krb5-libs-1.21.2-20.oe2403sp3.aarch64.rpm",
"krb5-server-1.21.2-20.oe2403sp3.aarch64.rpm",
"krb5-1.21.2-20.oe2403.aarch64.rpm",
"krb5-client-1.21.2-20.oe2403.aarch64.rpm",
"krb5-debuginfo-1.21.2-20.oe2403.aarch64.rpm",
"krb5-debugsource-1.21.2-20.oe2403.aarch64.rpm",
"krb5-devel-1.21.2-20.oe2403.aarch64.rpm",
"krb5-libs-1.21.2-20.oe2403.aarch64.rpm",
"krb5-server-1.21.2-20.oe2403.aarch64.rpm"
],
"x86_64": [
"krb5-1.21.2-20.oe2403sp1.x86_64.rpm",
"krb5-client-1.21.2-20.oe2403sp1.x86_64.rpm",
"krb5-debuginfo-1.21.2-20.oe2403sp1.x86_64.rpm",
"krb5-debugsource-1.21.2-20.oe2403sp1.x86_64.rpm",
"krb5-devel-1.21.2-20.oe2403sp1.x86_64.rpm",
"krb5-libs-1.21.2-20.oe2403sp1.x86_64.rpm",
"krb5-server-1.21.2-20.oe2403sp1.x86_64.rpm",
"krb5-1.21.2-20.oe2403sp3.x86_64.rpm",
"krb5-client-1.21.2-20.oe2403sp3.x86_64.rpm",
"krb5-debuginfo-1.21.2-20.oe2403sp3.x86_64.rpm",
"krb5-debugsource-1.21.2-20.oe2403sp3.x86_64.rpm",
"krb5-devel-1.21.2-20.oe2403sp3.x86_64.rpm",
"krb5-libs-1.21.2-20.oe2403sp3.x86_64.rpm",
"krb5-server-1.21.2-20.oe2403sp3.x86_64.rpm",
"krb5-1.21.2-20.oe2403.x86_64.rpm",
"krb5-client-1.21.2-20.oe2403.x86_64.rpm",
"krb5-debuginfo-1.21.2-20.oe2403.x86_64.rpm",
"krb5-debugsource-1.21.2-20.oe2403.x86_64.rpm",
"krb5-devel-1.21.2-20.oe2403.x86_64.rpm",
"krb5-libs-1.21.2-20.oe2403.x86_64.rpm",
"krb5-server-1.21.2-20.oe2403.x86_64.rpm"
],
"noarch": [
"krb5-help-1.21.2-20.oe2403sp1.noarch.rpm",
"krb5-help-1.21.2-20.oe2403sp3.noarch.rpm",
"krb5-help-1.21.2-20.oe2403.noarch.rpm"
]
}{
"src": [
"krb5-1.21.2-20.oe2403sp1.src.rpm"
],
"aarch64": [
"krb5-1.21.2-20.oe2403sp1.aarch64.rpm",
"krb5-client-1.21.2-20.oe2403sp1.aarch64.rpm",
"krb5-debuginfo-1.21.2-20.oe2403sp1.aarch64.rpm",
"krb5-debugsource-1.21.2-20.oe2403sp1.aarch64.rpm",
"krb5-devel-1.21.2-20.oe2403sp1.aarch64.rpm",
"krb5-libs-1.21.2-20.oe2403sp1.aarch64.rpm",
"krb5-server-1.21.2-20.oe2403sp1.aarch64.rpm"
],
"x86_64": [
"krb5-1.21.2-20.oe2403sp1.x86_64.rpm",
"krb5-client-1.21.2-20.oe2403sp1.x86_64.rpm",
"krb5-debuginfo-1.21.2-20.oe2403sp1.x86_64.rpm",
"krb5-debugsource-1.21.2-20.oe2403sp1.x86_64.rpm",
"krb5-devel-1.21.2-20.oe2403sp1.x86_64.rpm",
"krb5-libs-1.21.2-20.oe2403sp1.x86_64.rpm",
"krb5-server-1.21.2-20.oe2403sp1.x86_64.rpm"
],
"noarch": [
"krb5-help-1.21.2-20.oe2403sp1.noarch.rpm"
]
}{
"src": [
"krb5-1.21.2-20.oe2403sp3.src.rpm"
],
"aarch64": [
"krb5-1.21.2-20.oe2403sp3.aarch64.rpm",
"krb5-client-1.21.2-20.oe2403sp3.aarch64.rpm",
"krb5-debuginfo-1.21.2-20.oe2403sp3.aarch64.rpm",
"krb5-debugsource-1.21.2-20.oe2403sp3.aarch64.rpm",
"krb5-devel-1.21.2-20.oe2403sp3.aarch64.rpm",
"krb5-libs-1.21.2-20.oe2403sp3.aarch64.rpm",
"krb5-server-1.21.2-20.oe2403sp3.aarch64.rpm"
],
"x86_64": [
"krb5-1.21.2-20.oe2403sp3.x86_64.rpm",
"krb5-client-1.21.2-20.oe2403sp3.x86_64.rpm",
"krb5-debuginfo-1.21.2-20.oe2403sp3.x86_64.rpm",
"krb5-debugsource-1.21.2-20.oe2403sp3.x86_64.rpm",
"krb5-devel-1.21.2-20.oe2403sp3.x86_64.rpm",
"krb5-libs-1.21.2-20.oe2403sp3.x86_64.rpm",
"krb5-server-1.21.2-20.oe2403sp3.x86_64.rpm"
],
"noarch": [
"krb5-help-1.21.2-20.oe2403sp3.noarch.rpm"
]
}