ELSA-2021-4788

ELSA-2021-4788 - krb5 security update

Type:SECURITY
Severity:MODERATE
Release Date:2021-11-24

Description


[1.15.1-51.0.1]
- Add recursion limit for ASN.1 indefinite lengths [Orabug: 32582360]

[1.15.1-51]
- Fix KDC null deref on TGS inner body null server (CVE-2021-37750)
- Resolves: #1997599


Related CVEs


CVE-2021-37750

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 7 (aarch64) krb5-1.15.1-51.0.1.el7_9.src.rpm7328865918b8b7738eb0cde82bb6ca9b-
krb5-devel-1.15.1-51.0.1.el7_9.aarch64.rpm13a9ffaa3d0e4694798fc0bc4caf1036-
krb5-libs-1.15.1-51.0.1.el7_9.aarch64.rpm516a7c1cf8fd3e098ce39ddde974da2d-
krb5-pkinit-1.15.1-51.0.1.el7_9.aarch64.rpm61afbbc141349e17106b19b32d5a37a7-
krb5-server-1.15.1-51.0.1.el7_9.aarch64.rpm422f5c1fde9ae0eca0caa5af5fe8fc4a-
krb5-server-ldap-1.15.1-51.0.1.el7_9.aarch64.rpm6d045432d4673a788dc44b74cf4a81d0-
krb5-workstation-1.15.1-51.0.1.el7_9.aarch64.rpmaa06be5a468ac13beac2df70aeacfc4e-
libkadm5-1.15.1-51.0.1.el7_9.aarch64.rpma017f5d7cc89518a33fd25e8301710e7-
Oracle Linux 7 (x86_64) krb5-1.15.1-51.0.1.el7_9.src.rpm7328865918b8b7738eb0cde82bb6ca9b-
krb5-devel-1.15.1-51.0.1.el7_9.i686.rpmce542d22b16b6635acc5fd48acba23a8-
krb5-devel-1.15.1-51.0.1.el7_9.x86_64.rpma8115ecca49bf527b3f9e82a6f7981c6-
krb5-libs-1.15.1-51.0.1.el7_9.i686.rpm5dcf0ccedbb799a8aad86bfb8f1ff36b-
krb5-libs-1.15.1-51.0.1.el7_9.x86_64.rpm48d3bccf6bf4128f7d8e4bd8ea66145e-
krb5-pkinit-1.15.1-51.0.1.el7_9.x86_64.rpmbf767eaf8617fa61079cd10618eca405-
krb5-server-1.15.1-51.0.1.el7_9.x86_64.rpm91ad719790ad531d952af274643c711c-
krb5-server-ldap-1.15.1-51.0.1.el7_9.x86_64.rpm55a239cc01eec438e3a13167d58ac173-
krb5-workstation-1.15.1-51.0.1.el7_9.x86_64.rpm534d7e69c30920a6b7fb5ddc62b8ff15-
libkadm5-1.15.1-51.0.1.el7_9.i686.rpme38f0f3b97855bc955b4f37219780f4a-
libkadm5-1.15.1-51.0.1.el7_9.x86_64.rpmacbb3903f0ceaee1daea9978d1cfc170-



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete