REDHAT-BUG-2294677: Medium severity MIT Kerberos 5 vulnerability
In MIT Kerberos 5 (aka krb5) before 1.21.3, an attacker can modify the plaintext Extra Count field of a confidential GSS krb5 wrap token, causing the unwrapped token to appear truncated to the application.
Reference and upstream patch: https://github.com/krb5/krb5/commit/55fbf435edbe2e92dd8101669b1ce7144bc96fef
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-2294677?
The severity of REDHAT-BUG-2294677 is considered critical due to its potential impact on the confidentiality and integrity of GSS krb5 wrap tokens.
How do I fix REDHAT-BUG-2294677?
To fix REDHAT-BUG-2294677, update to MIT Kerberos 5 version 1.21.3 or later.
What versions are affected by REDHAT-BUG-2294677?
REDHAT-BUG-2294677 affects MIT Kerberos 5 versions below 1.21.3.
What type of attack does REDHAT-BUG-2294677 facilitate?
REDHAT-BUG-2294677 allows an attacker to manipulate the plaintext Extra Count field, leading to token truncation.
Is there an upstream patch for REDHAT-BUG-2294677?
Yes, there is an upstream patch available to address the vulnerability in REDHAT-BUG-2294677.