In MIT krb5 release 1.7 and later with incremental propagation enabled, an authenticated attacker can cause kadmind to write beyond the end of the mapped region for the iprop log file, likely causing a process crash.
This issue has been addressed in the following products: Red Hat Enterprise Linux 7 Extended Lifecycle Support Via RHSA-2025:1352 https://access.redhat.com/errata/RHSA-2025:1352
This issue has been addressed in the following products: Red Hat Enterprise Linux 8 Via RHSA-2025:2722 https://access.redhat.com/errata/RHSA-2025:2722
This issue has been addressed in the following products: Red Hat Enterprise Linux 9 Via RHSA-2025:7067 https://access.redhat.com/errata/RHSA-2025:7067