vulnerability

SUSE: CVE-2021-36222: SUSE Linux Security Advisory

Severity
5
CVSS
(AV:N/AC:L/Au:N/C:N/I:N/A:P)
Published
Jul 22, 2021
Added
Aug 21, 2021
Modified
Dec 14, 2022

Description

ec_verify in kdc/kdc_preauth_ec.c in the Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) before 1.18.4 and 1.19.x before 1.19.2 allows remote attackers to cause a NULL pointer dereference and daemon crash. This occurs because a return value is not properly managed in a certain situation.

Solutions

suse-upgrade-apache2-mod_apparmorsuse-upgrade-apparmor-abstractionssuse-upgrade-apparmor-docssuse-upgrade-apparmor-parsersuse-upgrade-apparmor-parser-langsuse-upgrade-apparmor-profilessuse-upgrade-apparmor-utilssuse-upgrade-apparmor-utils-langsuse-upgrade-ctdbsuse-upgrade-ctdb-pcp-pmdasuse-upgrade-dracut-saltbootsuse-upgrade-golang-github-boynux-squid_exportersuse-upgrade-golang-github-prometheus-node_exportersuse-upgrade-golang-github-prometheus-promususe-upgrade-grafanasuse-upgrade-krb5suse-upgrade-krb5-32bitsuse-upgrade-krb5-clientsuse-upgrade-krb5-develsuse-upgrade-krb5-devel-32bitsuse-upgrade-krb5-minisuse-upgrade-krb5-mini-develsuse-upgrade-krb5-plugin-kdb-ldapsuse-upgrade-krb5-plugin-preauth-otpsuse-upgrade-krb5-plugin-preauth-pkinitsuse-upgrade-krb5-plugin-preauth-spakesuse-upgrade-krb5-serversuse-upgrade-ldb-toolssuse-upgrade-libapparmor-develsuse-upgrade-libapparmor1suse-upgrade-libapparmor1-32bitsuse-upgrade-libipa_hbac-develsuse-upgrade-libipa_hbac0suse-upgrade-libldb-develsuse-upgrade-libldb2suse-upgrade-libldb2-32bitsuse-upgrade-libnfsidmap-ssssuse-upgrade-libsamba-policy-develsuse-upgrade-libsamba-policy-python3-develsuse-upgrade-libsamba-policy0-python3suse-upgrade-libsamba-policy0-python3-32bitsuse-upgrade-libsamba-policy0-python3-64bitsuse-upgrade-libsss_certmap-develsuse-upgrade-libsss_certmap0suse-upgrade-libsss_idmap-develsuse-upgrade-libsss_idmap0suse-upgrade-libsss_nss_idmap-develsuse-upgrade-libsss_nss_idmap0suse-upgrade-libsss_simpleifp-develsuse-upgrade-libsss_simpleifp0suse-upgrade-libtalloc-develsuse-upgrade-libtalloc2suse-upgrade-libtalloc2-32bitsuse-upgrade-libtdb-develsuse-upgrade-libtdb1suse-upgrade-libtdb1-32bitsuse-upgrade-libtevent-develsuse-upgrade-libtevent0suse-upgrade-libtevent0-32bitsuse-upgrade-pam_apparmorsuse-upgrade-pam_apparmor-32bitsuse-upgrade-perl-apparmorsuse-upgrade-prometheus-blackbox_exportersuse-upgrade-prometheus-postgres_exportersuse-upgrade-python3-apparmorsuse-upgrade-python3-ipa_hbacsuse-upgrade-python3-ldbsuse-upgrade-python3-ldb-32bitsuse-upgrade-python3-ldb-develsuse-upgrade-python3-rhnlibsuse-upgrade-python3-sss-murmursuse-upgrade-python3-sss_nss_idmapsuse-upgrade-python3-sssd-configsuse-upgrade-python3-tallocsuse-upgrade-python3-talloc-32bitsuse-upgrade-python3-talloc-develsuse-upgrade-python3-tdbsuse-upgrade-python3-tdb-32bitsuse-upgrade-python3-teventsuse-upgrade-python3-tevent-32bitsuse-upgrade-ruby-apparmorsuse-upgrade-sambasuse-upgrade-samba-ad-dcsuse-upgrade-samba-ad-dc-libssuse-upgrade-samba-ad-dc-libs-32bitsuse-upgrade-samba-cephsuse-upgrade-samba-clientsuse-upgrade-samba-client-32bitsuse-upgrade-samba-client-64bitsuse-upgrade-samba-client-libssuse-upgrade-samba-client-libs-32bitsuse-upgrade-samba-develsuse-upgrade-samba-devel-32bitsuse-upgrade-samba-docsuse-upgrade-samba-dsdb-modulessuse-upgrade-samba-gpupdatesuse-upgrade-samba-ldb-ldapsuse-upgrade-samba-libssuse-upgrade-samba-libs-32bitsuse-upgrade-samba-libs-64bitsuse-upgrade-samba-libs-python3suse-upgrade-samba-libs-python3-32bitsuse-upgrade-samba-libs-python3-64bitsuse-upgrade-samba-python3suse-upgrade-samba-testsuse-upgrade-samba-toolsuse-upgrade-samba-winbindsuse-upgrade-samba-winbind-libssuse-upgrade-samba-winbind-libs-32bitsuse-upgrade-spacecmdsuse-upgrade-sssdsuse-upgrade-sssd-adsuse-upgrade-sssd-commonsuse-upgrade-sssd-dbussuse-upgrade-sssd-ipasuse-upgrade-sssd-krb5suse-upgrade-sssd-krb5-commonsuse-upgrade-sssd-ldapsuse-upgrade-sssd-proxysuse-upgrade-sssd-toolssuse-upgrade-sssd-wbclientsuse-upgrade-sssd-wbclient-develsuse-upgrade-sssd-winbind-idmapsuse-upgrade-talloc-mansuse-upgrade-tdb-toolssuse-upgrade-tevent-mansuse-upgrade-wire
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.