Advisory: CLSA-2025:1755603427
OS: Ubuntu 16.04 ELS
Public date: 2025-08-19 11:37:11.02795
Project: krb5
Version: 1.13.2+dfsg-5ubuntu2.2+tuxcare.els6
Errata link: https://errata.tuxcare.com/els_os/ubuntu16.04els/CLSA-2025-1755603427.html
* SECURITY UPDATE: prevent spoofing vulnerability in GSSAPI-protected messages using RC4-HMAC-MD5 due to weaknesses in MD5 checksum design - debian/patches/CVE-2025-3576: don't issue session keys with deprecated enctypes. Updates tests. - CVE-2025-3576
Update command: apt-get update apt-get --only-upgrade install krb5*
krb5-admin-server_1.13.2+dfsg-5ubuntu2.2+tuxcare.els6_amd64.deb krb5-doc_1.13.2+dfsg-5ubuntu2.2+tuxcare.els6_all.deb krb5-gss-samples_1.13.2+dfsg-5ubuntu2.2+tuxcare.els6_amd64.deb krb5-k5tls_1.13.2+dfsg-5ubuntu2.2+tuxcare.els6_amd64.deb krb5-kdc_1.13.2+dfsg-5ubuntu2.2+tuxcare.els6_amd64.deb krb5-kdc-ldap_1.13.2+dfsg-5ubuntu2.2+tuxcare.els6_amd64.deb krb5-locales_1.13.2+dfsg-5ubuntu2.2+tuxcare.els6_all.deb krb5-multidev_1.13.2+dfsg-5ubuntu2.2+tuxcare.els6_amd64.deb krb5-otp_1.13.2+dfsg-5ubuntu2.2+tuxcare.els6_amd64.deb krb5-pkinit_1.13.2+dfsg-5ubuntu2.2+tuxcare.els6_amd64.deb krb5-user_1.13.2+dfsg-5ubuntu2.2+tuxcare.els6_amd64.deb libgssapi-krb5-2_1.13.2+dfsg-5ubuntu2.2+tuxcare.els6_amd64.deb libgssrpc4_1.13.2+dfsg-5ubuntu2.2+tuxcare.els6_amd64.deb libk5crypto3_1.13.2+dfsg-5ubuntu2.2+tuxcare.els6_amd64.deb libkadm5clnt-mit9_1.13.2+dfsg-5ubuntu2.2+tuxcare.els6_amd64.deb libkadm5srv-mit9_1.13.2+dfsg-5ubuntu2.2+tuxcare.els6_amd64.deb libkdb5-8_1.13.2+dfsg-5ubuntu2.2+tuxcare.els6_amd64.deb libkrad-dev_1.13.2+dfsg-5ubuntu2.2+tuxcare.els6_amd64.deb libkrad0_1.13.2+dfsg-5ubuntu2.2+tuxcare.els6_amd64.deb libkrb5-3_1.13.2+dfsg-5ubuntu2.2+tuxcare.els6_amd64.deb libkrb5-dev_1.13.2+dfsg-5ubuntu2.2+tuxcare.els6_amd64.deb libkrb5support0_1.13.2+dfsg-5ubuntu2.2+tuxcare.els6_amd64.deb