Security Advisory

CVE-2026-57914

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-06-26 11:28:26
Last updated 2026-06-26 18:36:16
Assigner apache
CVSS score not scored
State PUBLISHED

Description

By sending a deeply nested ASN1 structure to a Apache Kerby client or service, it's possible to trigger a StackOverFlow Exception which can lead to denial of service issues. Users are recommended to upgrade to version 2.1.2, which fixes this issue.