Release Info

Advisory: CLSA-2025:1756110212

OS: AlmaLinux 9.2 ESU

Public date: 2025-08-25 08:23:36.386155

Project: krb5

Version: 1.20.1-9.el9_2.tuxcare.els8

Errata link: https://errata.tuxcare.com/els_os/almalinux9.2esu/CLSA-2025-1756110212.html

Changelog

- CVE-2025-3576: prevent spoofing vulnerability in GSSAPI-protected messages using RC4-HMAC-MD5 due to weaknesses in MD5 checksum design - CVE-2025-24528: prevent overflow when calculating ulog block size

Update

Update command: dnf update krb5*

Packages list

krb5-devel-1.20.1-9.el9_2.tuxcare.els8.i686.rpm krb5-devel-1.20.1-9.el9_2.tuxcare.els8.x86_64.rpm krb5-libs-1.20.1-9.el9_2.tuxcare.els8.i686.rpm krb5-libs-1.20.1-9.el9_2.tuxcare.els8.x86_64.rpm krb5-pkinit-1.20.1-9.el9_2.tuxcare.els8.i686.rpm krb5-pkinit-1.20.1-9.el9_2.tuxcare.els8.x86_64.rpm krb5-server-1.20.1-9.el9_2.tuxcare.els8.i686.rpm krb5-server-1.20.1-9.el9_2.tuxcare.els8.x86_64.rpm krb5-server-ldap-1.20.1-9.el9_2.tuxcare.els8.i686.rpm krb5-server-ldap-1.20.1-9.el9_2.tuxcare.els8.x86_64.rpm krb5-workstation-1.20.1-9.el9_2.tuxcare.els8.x86_64.rpm libkadm5-1.20.1-9.el9_2.tuxcare.els8.i686.rpm libkadm5-1.20.1-9.el9_2.tuxcare.els8.x86_64.rpm

CVEs

CVE-2025-24528
CVE-2025-3576