{"id":"CVE-2025-24528","details":"In MIT Kerberos 5 (aka krb5) before 1.22 (with incremental propagation), there is an integer overflow for a large update size to resize() in kdb_log.c. An authenticated attacker can cause an out-of-bounds write and kadmind daemon crash.","modified":"2026-08-12T03:51:35.735103447Z","published":"2026-01-16T00:00:00Z","related":["ALSA-2025:2722","ALSA-2025:7067","SUSE-SU-2025:0304-1","SUSE-SU-2025:0343-1","SUSE-SU-2025:0351-1","SUSE-SU-2025:0401-1","SUSE-SU-2025:0822-1","SUSE-SU-2025:20153-1","SUSE-SU-2025:20303-1","openSUSE-SU-2025:14736-1"],"database_specific":{"cwe_ids":["CWE-190"],"osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/24xxx/CVE-2025-24528.json","cna_assigner":"mitre"},"references":[{"type":"WEB","url":"https://github.com/krb5/krb5/compare/krb5-1.21.3-final...krb5-1.22-final"},{"type":"WEB","url":"https://lists.debian.org/debian-lts-announce/2025/02/msg00029.html"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2025/24xxx/CVE-2025-24528.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2025-24528"},{"type":"FIX","url":"https://github.com/krb5/krb5/commit/78ceba024b64d49612375be4a12d1c066b0bfbd0"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/krb5/krb5","events":[{"introduced":"f70e5ec1adf2f54da8be987c5af0b29fa82ddfc6"},{"fixed":"969d2be8e235b85905da5e68f310327c0c5cbf1d"}],"database_specific":{"extracted_events":[{"introduced":"1.7"},{"fixed":"1.22"}],"source":"AFFECTED_FIELD"}}],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2025-24528.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:N/I:L/A:H"}]}