> Debian krb5 Important NegoEx Denial of Service Vuln DSA-6293-1
[DATE: 22/05/2026 21:32]
[LANGUAGE: EN]
Cem Onat Karagun discovered two vulnerabilities in the NegoEx parsing in krb5, the MIT implementation of Kerberos. An unauthenticated remote attacker can take advantage of these flaws to cause a denial of service. For the oldstable distribution (bookworm), this problem has been fixed in version 1.20.1-2+deb12u5.