Bug 2502721 (CVE-2026-58216) - CVE-2026-58216 samba: kpasswd service: kpasswd packet that contains malformed ASN.1 might cause the server to access 6 bytes of unallocated memory leading server to crash
Summary: CVE-2026-58216 samba: kpasswd service: kpasswd packet that contains malformed...
Keywords:
Status: NEW
Alias: CVE-2026-58216
Deadline: 2026-07-28
Product: Security Response
Classification: Other
Component: vulnerability
Version: unspecified
Hardware: All
OS: Linux
medium
medium
Target Milestone: ---
Assignee: Product Security
QA Contact:
URL:
Whiteboard:
Depends On: 2510884
Blocks:
TreeView+ depends on / blocked
 
Reported: 2026-07-20 10:46 UTC by OSIDB Bzimport
Modified: 2026-08-04 05:00 UTC (History)
3 users (show)

Fixed In Version:
Clone Of:
Environment:
Last Closed:
Embargoed:


Attachments (Terms of Use)

Description OSIDB Bzimport 2026-07-20 10:46:55 UTC
A miscalculation means an ASN.1 structure used in a Kerberos password change is assumed to be six bytes bigger than it is. This does not affect ordinary packets (the ASN.1 itself contains the correct size), but a crafted ANS1 packet could force up to six unallocated bytes to be read. The usual outcome of this will be a decryption failure and an error message, but it could make the server process crash.


Note You need to log in before you can comment on or make changes to this bug.