Medium severity5.3NVD Advisory· Published Jul 30, 2026· Updated Jul 31, 2026
CVE-2026-58216
CVE-2026-58216
Description
An out-of-bounds read flaw was found in Samba's Kerberos Key Distribution Center's (KDC) password change (kpasswd) service. When processing malformed ASN.1-encoded Kerberos password change request, Samba server miscalculates the structure size and attempts to read up to six bytes beyond the end of the allocated buffer. While this out-of-bounds read typically results in a harmless decryption failure, if the read hits unmapped memory, it causes the KDC process to crash. An authenticated attacker can send a specially crafted kpasswd request containing malformed ASN.1 data to trigger the out-of-bounds read, which may cause the KDC process to terminate, resulting in a denial of service.
Affected products
4- osv-coords2 versionspkg:rpm/opensuse/samba&distro=openSUSE%20Leap%2016.0pkg:rpm/opensuse/samba&distro=openSUSE%20Tumbleweed
< 4.22.9+git.538.af6cb4fb2e-160000.1.1+ 1 more
- (no CPE)range: < 4.22.9+git.538.af6cb4fb2e-160000.1.1
- (no CPE)range: < 4.24.5+git.481.dba78dbdea-1.1
Patches
Vulnerability mechanics
References
4News mentions
0No linked articles in our index yet.