Security update for krb5
This update for krb5 fixes the following issues:
- CVE-2021-36222: Fixed KDC null deref on bad encrypted challenge. (bsc#1188571)
This update was imported from the SUSE:SLE-15-SP1:Update update project.
-
Submitted by
Samuel Cabrero (scabrero)
Fixed bugs
bnc#1188571
VUL-0: CVE-2021-36222: krb5: sending a request containing a PA-ENCRYPTED-CHALLENGE padata element without using FAST could result in null dereference in the KDC which leads to DoS