GHSA-h9mq-35p6-m5v2HighCVSS 7.5

In the Linux kernel, the following vulnerability has been resolved: crypto/krb5, rxrpc: Fix lack...

Published
July 24, 2026
Last Modified
July 27, 2026

🔗 CVE IDs covered (1)

📋 Description

In the Linux kernel, the following vulnerability has been resolved:

crypto/krb5, rxrpc: Fix lack of pre-decrypt/pre-verify length checks

Change the krb5 crypto library to provide facilities to precheck the length of the message about to be decrypted or verified.

Fix AF_RXRPC to make use of this to validate DATA packets secured with RxGK.

🔗 References (5)