ELSA-2025-8411

ELSA-2025-8411 - krb5 security update

Type:SECURITY
Impact:MODERATE
Release Date:2025-06-03

Description


[1.18.2-32.0.1]
- Fixed race condition in krb5_set_password() [Orabug: 33609767]

[1.18.2-32]
- Do not block HMAC-MD4/5 in FIPS mode
Resolves: RHEL-86786
- Don't issue RC4 session keys by default (CVE-2025-3576)
Resolves: RHEL-88049
- Add PKINIT paChecksum2 from MS-PKCA v20230920
Resolves: RHEL-82648


Related CVEs


CVE-2025-3576

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 8 (aarch64) krb5-1.18.2-32.0.1.el8_10.src.rpmdbfa6a1740aaf4bf33e933523297c42cfc5ff49a87222f64b5e453475927140e-ol8_aarch64_baseos_latest
krb5-1.18.2-32.0.1.el8_10.src.rpmdbfa6a1740aaf4bf33e933523297c42cfc5ff49a87222f64b5e453475927140e-ol8_aarch64_u10_baseos_patch
krb5-devel-1.18.2-32.0.1.el8_10.aarch64.rpma83a592e00406d636420b2f3c7d1b7e1c9093c939645377106159342e0e3a021-ol8_aarch64_baseos_latest
krb5-devel-1.18.2-32.0.1.el8_10.aarch64.rpma83a592e00406d636420b2f3c7d1b7e1c9093c939645377106159342e0e3a021-ol8_aarch64_u10_baseos_patch
krb5-libs-1.18.2-32.0.1.el8_10.aarch64.rpm7ea33712170739a1f9d148492902c07c9fe7e9fa6e05d4d3b993102d898320c3-ol8_aarch64_baseos_latest
krb5-libs-1.18.2-32.0.1.el8_10.aarch64.rpm7ea33712170739a1f9d148492902c07c9fe7e9fa6e05d4d3b993102d898320c3-ol8_aarch64_u10_baseos_patch
krb5-pkinit-1.18.2-32.0.1.el8_10.aarch64.rpm44717751eb8548b44e92ceeb4ddddf255fb49249336a87912c5c80b31a59237e-ol8_aarch64_baseos_latest
krb5-pkinit-1.18.2-32.0.1.el8_10.aarch64.rpm44717751eb8548b44e92ceeb4ddddf255fb49249336a87912c5c80b31a59237e-ol8_aarch64_u10_baseos_patch
krb5-server-1.18.2-32.0.1.el8_10.aarch64.rpm9a08e8e46b00bc7dc78b9fdb9985f11860dbea3fb1f47f0cda205212e2a4c7fd-ol8_aarch64_baseos_latest
krb5-server-1.18.2-32.0.1.el8_10.aarch64.rpm9a08e8e46b00bc7dc78b9fdb9985f11860dbea3fb1f47f0cda205212e2a4c7fd-ol8_aarch64_u10_baseos_patch
krb5-server-ldap-1.18.2-32.0.1.el8_10.aarch64.rpmdf36c68f6edc0e2eea8b9e3a02920a4940463e78304a887646bfb2b1471829c0-ol8_aarch64_baseos_latest
krb5-server-ldap-1.18.2-32.0.1.el8_10.aarch64.rpmdf36c68f6edc0e2eea8b9e3a02920a4940463e78304a887646bfb2b1471829c0-ol8_aarch64_u10_baseos_patch
krb5-workstation-1.18.2-32.0.1.el8_10.aarch64.rpm9d251afad1fd16cbf0bab3218f29ba89023e935f90e0fb92c243a98fe201057e-ol8_aarch64_baseos_latest
krb5-workstation-1.18.2-32.0.1.el8_10.aarch64.rpm9d251afad1fd16cbf0bab3218f29ba89023e935f90e0fb92c243a98fe201057e-ol8_aarch64_u10_baseos_patch
libkadm5-1.18.2-32.0.1.el8_10.aarch64.rpm4b99b758d55c21d26f210e473d6d14d6906547fc0eefd39a24056e3fccace19d-ol8_aarch64_baseos_latest
libkadm5-1.18.2-32.0.1.el8_10.aarch64.rpm4b99b758d55c21d26f210e473d6d14d6906547fc0eefd39a24056e3fccace19d-ol8_aarch64_u10_baseos_patch
Oracle Linux 8 (x86_64) krb5-1.18.2-32.0.1.el8_10.src.rpmdbfa6a1740aaf4bf33e933523297c42cfc5ff49a87222f64b5e453475927140e-ol8_x86_64_baseos_latest
krb5-1.18.2-32.0.1.el8_10.src.rpmdbfa6a1740aaf4bf33e933523297c42cfc5ff49a87222f64b5e453475927140e-ol8_x86_64_u10_baseos_patch
krb5-devel-1.18.2-32.0.1.el8_10.i686.rpmb87f1ef253df00fedab4d83db2cc2444559f184056e26929acf13f495388f736-ol8_x86_64_baseos_latest
krb5-devel-1.18.2-32.0.1.el8_10.i686.rpmb87f1ef253df00fedab4d83db2cc2444559f184056e26929acf13f495388f736-ol8_x86_64_u10_baseos_patch
krb5-devel-1.18.2-32.0.1.el8_10.x86_64.rpm89414d54e7a9b1d69651e499ff75cc4b44b51d7dabd281e103826b9ca56d36cb-ol8_x86_64_baseos_latest
krb5-devel-1.18.2-32.0.1.el8_10.x86_64.rpm89414d54e7a9b1d69651e499ff75cc4b44b51d7dabd281e103826b9ca56d36cb-ol8_x86_64_u10_baseos_patch
krb5-libs-1.18.2-32.0.1.el8_10.i686.rpm16c60de59fa797dfb9b9e4d8902de9ea00be81baf364f0670e0b0d5ee1953e22-ol8_x86_64_baseos_latest
krb5-libs-1.18.2-32.0.1.el8_10.i686.rpm16c60de59fa797dfb9b9e4d8902de9ea00be81baf364f0670e0b0d5ee1953e22-ol8_x86_64_u10_baseos_patch
krb5-libs-1.18.2-32.0.1.el8_10.x86_64.rpmd8282e740b4c70cb953550faf838a1dca004f938048db8be5668b6deb4a1f601-ol8_x86_64_baseos_latest
krb5-libs-1.18.2-32.0.1.el8_10.x86_64.rpmd8282e740b4c70cb953550faf838a1dca004f938048db8be5668b6deb4a1f601-ol8_x86_64_u10_baseos_patch
krb5-pkinit-1.18.2-32.0.1.el8_10.i686.rpm25f6b91c6ad95a538f238a03acc56ec2efa2206318cc804afde1c9a91bf7c395-ol8_x86_64_baseos_latest
krb5-pkinit-1.18.2-32.0.1.el8_10.i686.rpm25f6b91c6ad95a538f238a03acc56ec2efa2206318cc804afde1c9a91bf7c395-ol8_x86_64_u10_baseos_patch
krb5-pkinit-1.18.2-32.0.1.el8_10.x86_64.rpmb709941f857193cd1e710c9ef4f1789151dd2e4add9bda783ed3e64863c0e0e7-ol8_x86_64_baseos_latest
krb5-pkinit-1.18.2-32.0.1.el8_10.x86_64.rpmb709941f857193cd1e710c9ef4f1789151dd2e4add9bda783ed3e64863c0e0e7-ol8_x86_64_u10_baseos_patch
krb5-server-1.18.2-32.0.1.el8_10.i686.rpmb36e972f5a07e89d77ee2bd96901e214306a3a8e1b17880f02eeb416d50df2e6-ol8_x86_64_baseos_latest
krb5-server-1.18.2-32.0.1.el8_10.i686.rpmb36e972f5a07e89d77ee2bd96901e214306a3a8e1b17880f02eeb416d50df2e6-ol8_x86_64_u10_baseos_patch
krb5-server-1.18.2-32.0.1.el8_10.x86_64.rpme968f02fdb8d196649694c7381fe72b4e13942acd87211ac2302150f9cec6ed7-ol8_x86_64_baseos_latest
krb5-server-1.18.2-32.0.1.el8_10.x86_64.rpme968f02fdb8d196649694c7381fe72b4e13942acd87211ac2302150f9cec6ed7-ol8_x86_64_u10_baseos_patch
krb5-server-ldap-1.18.2-32.0.1.el8_10.i686.rpm8b44c066d5cbc510d6426a648a59ce2c3512d0d0335d31c9a2e5088670322bf6-ol8_x86_64_baseos_latest
krb5-server-ldap-1.18.2-32.0.1.el8_10.i686.rpm8b44c066d5cbc510d6426a648a59ce2c3512d0d0335d31c9a2e5088670322bf6-ol8_x86_64_u10_baseos_patch
krb5-server-ldap-1.18.2-32.0.1.el8_10.x86_64.rpme8dc33b8f9082d86e4d6f6d660d8e1dcbbeb9a827cfeb3eaf2a8ab9ae123d997-ol8_x86_64_baseos_latest
krb5-server-ldap-1.18.2-32.0.1.el8_10.x86_64.rpme8dc33b8f9082d86e4d6f6d660d8e1dcbbeb9a827cfeb3eaf2a8ab9ae123d997-ol8_x86_64_u10_baseos_patch
krb5-workstation-1.18.2-32.0.1.el8_10.x86_64.rpmdb23d52180d37255c5538c9de3512aaeb9cf93a5d00184431eab424175a4b0c2-ol8_x86_64_baseos_latest
krb5-workstation-1.18.2-32.0.1.el8_10.x86_64.rpmdb23d52180d37255c5538c9de3512aaeb9cf93a5d00184431eab424175a4b0c2-ol8_x86_64_u10_baseos_patch
libkadm5-1.18.2-32.0.1.el8_10.i686.rpmbbe74a9bda6deadb966d290a6436fbfb26c4199323cd3f871773fd6defff1614-ol8_x86_64_baseos_latest
libkadm5-1.18.2-32.0.1.el8_10.i686.rpmbbe74a9bda6deadb966d290a6436fbfb26c4199323cd3f871773fd6defff1614-ol8_x86_64_u10_baseos_patch
libkadm5-1.18.2-32.0.1.el8_10.x86_64.rpm01b55bd411054f41032fed4464e06a85049d22aba1cd9c7252e7d5589c887987-ol8_x86_64_baseos_latest
libkadm5-1.18.2-32.0.1.el8_10.x86_64.rpm01b55bd411054f41032fed4464e06a85049d22aba1cd9c7252e7d5589c887987-ol8_x86_64_u10_baseos_patch



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete