Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2005:045 - Security Advisory
Issued:
2005-02-15
Updated:
2005-02-15

RHSA-2005:045 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

krb5 security update

Type/Severity

Security Advisory: Moderate

Red Hat Lightspeed patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

Updated Kerberos (krb5) packages that correct a buffer overflow bug are now
available for Red Hat Enterprise Linux 4.

This update has been rated as having moderate security impact by the Red Hat
Security Response Team.

Description

Kerberos is a networked authentication system that uses a trusted third
party (a KDC) to authenticate clients and servers to each other.

A heap based buffer overflow bug was found in the administration library of
Kerberos 1.3.5 and earlier. This bug could allow an authenticated remote
attacker to execute arbitrary commands on a realm's master Kerberos KDC.
The Common Vulnerabilities and Exposures project (cve.mitre.org) has
assigned the name CAN-2004-1189 to this issue.

All users of krb5 should upgrade to these updated packages, which contain
backported security patches to resolve these issues.

Solution

Before applying this update, make sure that all previously-released
errata relevant to your system have been applied. Use Red Hat
Network to download and update your packages. To launch the Red Hat
Update Agent, use the following command:

up2date

For information on how to install packages manually, refer to the
following Web page for the System Administration or Customization
guide specific to your system:

http://www.redhat.com/docs/manuals/enterprise/

Affected Products

  • Red Hat Enterprise Linux Server 4 x86_64
  • Red Hat Enterprise Linux Server 4 ia64
  • Red Hat Enterprise Linux Server 4 i386
  • Red Hat Enterprise Linux Workstation 4 x86_64
  • Red Hat Enterprise Linux Workstation 4 ia64
  • Red Hat Enterprise Linux Workstation 4 i386
  • Red Hat Enterprise Linux Desktop 4 x86_64
  • Red Hat Enterprise Linux Desktop 4 i386
  • Red Hat Enterprise Linux for IBM z Systems 4 s390x
  • Red Hat Enterprise Linux for IBM z Systems 4 s390
  • Red Hat Enterprise Linux for Power, big endian 4 ppc

Fixes

  • BZ - 139235 - krsh problem
  • BZ - 144196 - CAN-2004-1189 buffer overflow in krb5

CVEs

  • CVE-2004-1189

References

  • http://web.mit.edu/kerberos/www/advisories/MITKRB5-SA-2004-004-pwhist.txt
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux Server 4

SRPM
krb5-1.3.4-10.src.rpm SHA-256: 325a671e2a5c0df5e87db2e6a4a80f41248ba76d17726b0a4940f8b56f31bcdf
x86_64
krb5-devel-1.3.4-10.x86_64.rpm SHA-256: c57b95b0e18c7ca62e6f4ca59ece86bf08896e89487380a960dbbeb08a34ee28
krb5-devel-1.3.4-10.x86_64.rpm SHA-256: c57b95b0e18c7ca62e6f4ca59ece86bf08896e89487380a960dbbeb08a34ee28
krb5-libs-1.3.4-10.i386.rpm SHA-256: 96423928ab042889aeafde7a5ff9e36e9a91f0d9121afc53db0755c7cfc4d544
krb5-libs-1.3.4-10.i386.rpm SHA-256: 96423928ab042889aeafde7a5ff9e36e9a91f0d9121afc53db0755c7cfc4d544
krb5-libs-1.3.4-10.x86_64.rpm SHA-256: 033c55cae7b1208f8179fd4fee86c1df07867f07f70370c983d012e54d2e7b9c
krb5-libs-1.3.4-10.x86_64.rpm SHA-256: 033c55cae7b1208f8179fd4fee86c1df07867f07f70370c983d012e54d2e7b9c
krb5-server-1.3.4-10.x86_64.rpm SHA-256: 53fee57e2d438cd65f88d3dec585bc4e1a5f3ac01245df925f48062f4ea6de66
krb5-server-1.3.4-10.x86_64.rpm SHA-256: 53fee57e2d438cd65f88d3dec585bc4e1a5f3ac01245df925f48062f4ea6de66
krb5-workstation-1.3.4-10.x86_64.rpm SHA-256: cc2bed0f202e0609b2b275580962fe805eb8b9e6d3721067156c7259a9ad99d6
krb5-workstation-1.3.4-10.x86_64.rpm SHA-256: cc2bed0f202e0609b2b275580962fe805eb8b9e6d3721067156c7259a9ad99d6
ia64
krb5-devel-1.3.4-10.ia64.rpm SHA-256: b6caf987011e345136b60f8ae0bbd1d14343ee501a9674ad90d278e79befcde1
krb5-devel-1.3.4-10.ia64.rpm SHA-256: b6caf987011e345136b60f8ae0bbd1d14343ee501a9674ad90d278e79befcde1
krb5-libs-1.3.4-10.i386.rpm SHA-256: 96423928ab042889aeafde7a5ff9e36e9a91f0d9121afc53db0755c7cfc4d544
krb5-libs-1.3.4-10.i386.rpm SHA-256: 96423928ab042889aeafde7a5ff9e36e9a91f0d9121afc53db0755c7cfc4d544
krb5-libs-1.3.4-10.ia64.rpm SHA-256: 03548389f50db8e7b151a67252f811e2b5e90ddbe76dbff67688f9e863459f7b
krb5-libs-1.3.4-10.ia64.rpm SHA-256: 03548389f50db8e7b151a67252f811e2b5e90ddbe76dbff67688f9e863459f7b
krb5-server-1.3.4-10.ia64.rpm SHA-256: f75df46fe8ad952d659b2c8a27b89ca1216526553c459e13238286c446b05211
krb5-server-1.3.4-10.ia64.rpm SHA-256: f75df46fe8ad952d659b2c8a27b89ca1216526553c459e13238286c446b05211
krb5-workstation-1.3.4-10.ia64.rpm SHA-256: 6abb5b2503d6b6f36280c27cc279667cabb242c49a5a21caed0c3bc1287ed4ce
krb5-workstation-1.3.4-10.ia64.rpm SHA-256: 6abb5b2503d6b6f36280c27cc279667cabb242c49a5a21caed0c3bc1287ed4ce
i386
krb5-devel-1.3.4-10.i386.rpm SHA-256: 70e1917be585cf085ddaeb2729f417f97dbe4b3ed27ecda6831b984f852357ed
krb5-devel-1.3.4-10.i386.rpm SHA-256: 70e1917be585cf085ddaeb2729f417f97dbe4b3ed27ecda6831b984f852357ed
krb5-libs-1.3.4-10.i386.rpm SHA-256: 96423928ab042889aeafde7a5ff9e36e9a91f0d9121afc53db0755c7cfc4d544
krb5-libs-1.3.4-10.i386.rpm SHA-256: 96423928ab042889aeafde7a5ff9e36e9a91f0d9121afc53db0755c7cfc4d544
krb5-server-1.3.4-10.i386.rpm SHA-256: 9b840e247ef8307aa63048a8056d385ab445b2ab28c508866c82c546e62652fa
krb5-server-1.3.4-10.i386.rpm SHA-256: 9b840e247ef8307aa63048a8056d385ab445b2ab28c508866c82c546e62652fa
krb5-workstation-1.3.4-10.i386.rpm SHA-256: aac558015a35a1dcb30ce8673d11c7a053d8cf0a8568234af160fc8b3fd4b053
krb5-workstation-1.3.4-10.i386.rpm SHA-256: aac558015a35a1dcb30ce8673d11c7a053d8cf0a8568234af160fc8b3fd4b053

Red Hat Enterprise Linux Workstation 4

SRPM
krb5-1.3.4-10.src.rpm SHA-256: 325a671e2a5c0df5e87db2e6a4a80f41248ba76d17726b0a4940f8b56f31bcdf
x86_64
krb5-devel-1.3.4-10.x86_64.rpm SHA-256: c57b95b0e18c7ca62e6f4ca59ece86bf08896e89487380a960dbbeb08a34ee28
krb5-libs-1.3.4-10.i386.rpm SHA-256: 96423928ab042889aeafde7a5ff9e36e9a91f0d9121afc53db0755c7cfc4d544
krb5-libs-1.3.4-10.x86_64.rpm SHA-256: 033c55cae7b1208f8179fd4fee86c1df07867f07f70370c983d012e54d2e7b9c
krb5-server-1.3.4-10.x86_64.rpm SHA-256: 53fee57e2d438cd65f88d3dec585bc4e1a5f3ac01245df925f48062f4ea6de66
krb5-workstation-1.3.4-10.x86_64.rpm SHA-256: cc2bed0f202e0609b2b275580962fe805eb8b9e6d3721067156c7259a9ad99d6
ia64
krb5-devel-1.3.4-10.ia64.rpm SHA-256: b6caf987011e345136b60f8ae0bbd1d14343ee501a9674ad90d278e79befcde1
krb5-libs-1.3.4-10.i386.rpm SHA-256: 96423928ab042889aeafde7a5ff9e36e9a91f0d9121afc53db0755c7cfc4d544
krb5-libs-1.3.4-10.ia64.rpm SHA-256: 03548389f50db8e7b151a67252f811e2b5e90ddbe76dbff67688f9e863459f7b
krb5-server-1.3.4-10.ia64.rpm SHA-256: f75df46fe8ad952d659b2c8a27b89ca1216526553c459e13238286c446b05211
krb5-workstation-1.3.4-10.ia64.rpm SHA-256: 6abb5b2503d6b6f36280c27cc279667cabb242c49a5a21caed0c3bc1287ed4ce
i386
krb5-devel-1.3.4-10.i386.rpm SHA-256: 70e1917be585cf085ddaeb2729f417f97dbe4b3ed27ecda6831b984f852357ed
krb5-libs-1.3.4-10.i386.rpm SHA-256: 96423928ab042889aeafde7a5ff9e36e9a91f0d9121afc53db0755c7cfc4d544
krb5-server-1.3.4-10.i386.rpm SHA-256: 9b840e247ef8307aa63048a8056d385ab445b2ab28c508866c82c546e62652fa
krb5-workstation-1.3.4-10.i386.rpm SHA-256: aac558015a35a1dcb30ce8673d11c7a053d8cf0a8568234af160fc8b3fd4b053

Red Hat Enterprise Linux Desktop 4

SRPM
krb5-1.3.4-10.src.rpm SHA-256: 325a671e2a5c0df5e87db2e6a4a80f41248ba76d17726b0a4940f8b56f31bcdf
x86_64
krb5-devel-1.3.4-10.x86_64.rpm SHA-256: c57b95b0e18c7ca62e6f4ca59ece86bf08896e89487380a960dbbeb08a34ee28
krb5-libs-1.3.4-10.i386.rpm SHA-256: 96423928ab042889aeafde7a5ff9e36e9a91f0d9121afc53db0755c7cfc4d544
krb5-libs-1.3.4-10.x86_64.rpm SHA-256: 033c55cae7b1208f8179fd4fee86c1df07867f07f70370c983d012e54d2e7b9c
krb5-server-1.3.4-10.x86_64.rpm SHA-256: 53fee57e2d438cd65f88d3dec585bc4e1a5f3ac01245df925f48062f4ea6de66
krb5-workstation-1.3.4-10.x86_64.rpm SHA-256: cc2bed0f202e0609b2b275580962fe805eb8b9e6d3721067156c7259a9ad99d6
i386
krb5-devel-1.3.4-10.i386.rpm SHA-256: 70e1917be585cf085ddaeb2729f417f97dbe4b3ed27ecda6831b984f852357ed
krb5-libs-1.3.4-10.i386.rpm SHA-256: 96423928ab042889aeafde7a5ff9e36e9a91f0d9121afc53db0755c7cfc4d544
krb5-server-1.3.4-10.i386.rpm SHA-256: 9b840e247ef8307aa63048a8056d385ab445b2ab28c508866c82c546e62652fa
krb5-workstation-1.3.4-10.i386.rpm SHA-256: aac558015a35a1dcb30ce8673d11c7a053d8cf0a8568234af160fc8b3fd4b053

Red Hat Enterprise Linux for IBM z Systems 4

SRPM
krb5-1.3.4-10.src.rpm SHA-256: 325a671e2a5c0df5e87db2e6a4a80f41248ba76d17726b0a4940f8b56f31bcdf
s390x
krb5-devel-1.3.4-10.s390x.rpm SHA-256: aec8ddcb7a9eae5063856b35f3b9e3befaa777894e79db6175e5916427758b85
krb5-libs-1.3.4-10.s390.rpm SHA-256: 985d72278652ea3001f54210db0c7ecc466da314343d440f1f286223dd10e7cd
krb5-libs-1.3.4-10.s390x.rpm SHA-256: 93e110e06bb68d66fd57fc671da392ebe34783095dd99e4db1e1787b77078c2d
krb5-server-1.3.4-10.s390x.rpm SHA-256: ecb1226da9ee4c00f8f06f1160c3cf5709adbadc18b98ae8ae5317be232604b1
krb5-workstation-1.3.4-10.s390x.rpm SHA-256: 4401a5406760732bdcf98214eb810fb62734a0833a21d8797ece1977e5541b16
s390
krb5-devel-1.3.4-10.s390.rpm SHA-256: 6c1f48f0ee23c498ce2b1b5f409ddf1c316e291ed48a50a4ae90f3add7ec411f
krb5-libs-1.3.4-10.s390.rpm SHA-256: 985d72278652ea3001f54210db0c7ecc466da314343d440f1f286223dd10e7cd
krb5-server-1.3.4-10.s390.rpm SHA-256: 3568274d65536b745a923ed6934e087c7793b6d67a624eeae5bf2f6a0b6d42d1
krb5-workstation-1.3.4-10.s390.rpm SHA-256: 2c12d6454c58781eeccb360e496a92a26478a8a1cc43032c95df9dee3d8be084

Red Hat Enterprise Linux for Power, big endian 4

SRPM
krb5-1.3.4-10.src.rpm SHA-256: 325a671e2a5c0df5e87db2e6a4a80f41248ba76d17726b0a4940f8b56f31bcdf
ppc
krb5-devel-1.3.4-10.ppc.rpm SHA-256: db759874f847c28365b445dcad0e739dae38225b9c0be31a1834f77eaf11a68e
krb5-libs-1.3.4-10.ppc.rpm SHA-256: f5a5ad245a58d51a0b39c942b64b8da3eab44a8a280912bda518404e4d441886
krb5-libs-1.3.4-10.ppc64.rpm SHA-256: cce0124383e084b962261f9ad64cacdc354a341517ddcf44170a9044c220e68e
krb5-server-1.3.4-10.ppc.rpm SHA-256: 180f206f7a6b178d240b40265125c52f29ef82f8269f6def77ba44b563ac4562
krb5-workstation-1.3.4-10.ppc.rpm SHA-256: 35e2607e3dd24d015c320e0a5cda84a52e0678ac93ab22239a1b9f46d888527f

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2026 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility