vulnerability

Huawei EulerOS: CVE-2025-24528: krb5 security update

Severity
7
CVSS
(AV:N/AC:L/Au:S/C:N/I:N/A:C)
Published
Apr 9, 2025
Added
May 7, 2025
Modified
May 7, 2025

Description

A flaw was found in krb5. With incremental propagation enabled, an authenticated attacker can cause kadmind to write beyond the end of the mapped region for the iprop log file. This issue can trigger a process crash and lead to a denial of service.

Solution(s)

huawei-euleros-2_0_sp12-upgrade-krb5huawei-euleros-2_0_sp12-upgrade-krb5-clienthuawei-euleros-2_0_sp12-upgrade-krb5-libshuawei-euleros-2_0_sp12-upgrade-krb5-server
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.