Fedora Account System
Red Hat Associate
Red Hat Customer
A miscalculation means an ASN.1 structure used in a Kerberos password change is assumed to be six bytes bigger than it is. This does not affect ordinary packets (the ASN.1 itself contains the correct size), but a crafted ANS1 packet could force up to six unallocated bytes to be read. The usual outcome of this will be a decryption failure and an error message, but it could make the server process crash.