Filter
AND

Kerberos 1.21.3 fixes vulnerabilities in GSS message token handling

MIT Kerberos 5 ApplicationIn MIT Kerberos 5 (aka krb5) before 1.21.3, an attacker can modify the plaintext Extra Count field o…

First published (updated )

MIT Kerberos 5 ApplicationIn MIT Kerberos 5 (aka krb5) before 1.21.3, an attacker can cause invalid memory reads during GSS me…

First published (updated )

debian/krb5Last updated 29 August 2024

7.5
First published (updated )

DebianLast updated 29 August 2024

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

MIT Kerberos 5 ApplicationKerberos 5 (aka krb5) 1.21.2 contains a memory leak vulnerability in /krb5/src/kdc/ndr.c. Reference…

First published (updated )

MIT Kerberos 5 ApplicationKerberos 5 (aka krb5) 1.21.2 contains a memory leak vulnerability in /krb5/src/lib/gssapi/krb5/k5sea…

First published (updated )

MIT Kerberos 5 ApplicationKerberos 5 (aka krb5) 1.21.2 contains a memory leak in /krb5/src/lib/rpc/pmap_rmt.c. References: <…

First published (updated )

IBM Storage Defender Resiliency ServiceKerberos 5 (aka krb5) 1.21.2 contains a memory leak vulnerability in /krb5/src/kdc/ndr.c.

EPSS
0.04%
First published (updated )

MIT Kerberos 5 ApplicationDouble Free

8.8
EPSS
0.10%
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

MIT Kerberos 5 Applicationlib/kadm5/kadm_rpc_xdr.c in MIT Kerberos 5 (aka krb5) before 1.20.2 and 1.21.x before 1.21.1 frees a…

First published (updated )

MIT Kerberos 5 ApplicationBuffer Overflow, Integer Overflow

8.8
First published (updated )

ubuntu/inetutilsNull Pointer Dereference

7.5
First published (updated )

MIT Kerberos 5 ApplicationNull Pointer Dereference

First published (updated )

debian/krb5Null Pointer Dereference

7.5
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

MIT Kerberos 5 ApplicationAn issue was discovered in rcp in MIT krb5-appl through 1.0.3. Due to the rcp implementation being d…

First published (updated )

MIT Kerberos 5 ApplicationIn the rcp client in MIT krb5-appl through 1.0.3, malicious servers could bypass intended access res…

7.5
First published (updated )

redhat/krb5A flaw was found in krb5. MIT Kerberos 5 allows unbounded recursion via an ASN.1-encoded Kerberos me…

7.5
First published (updated )

FedoraA flaw was found in, Fedora versions of krb5 from 1.16.1 to, including 1.17.x, in the way a Kerberos…

7.5
First published (updated )

DebianA Reachable Assertion issue was discovered in the KDC in MIT Kerberos 5 (aka krb5) before 1.17. If a…

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

MIT Kerberos 5 ApplicationMIT krb5 1.6 or later allows an authenticated kadmin with permission to add principals to an LDAP Ke…

First published (updated )

debian/krb5Null Pointer Dereference

First published (updated )

MIT Kerberos 5 ApplicationNull Pointer Dereference

First published (updated )

MIT Kerberos 5 ApplicationInteger Overflow

7.5
First published (updated )

MIT Kerberos 5 ApplicationDouble Free

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Red Hat Enterprise LinuxAn authentication bypass flaw was found in the way krb5's certauth interface before 1.16.1 handled t…

First published (updated )

redhat/krb5Buffer Overflow

First published (updated )

MIT Kerberos 5 ApplicationIn MIT Kerberos 5 (aka krb5) 1.7 and later, an authenticated attacker can cause a KDC assertion fail…

First published (updated )

MIT Kerberos 5 ApplicationNull Pointer Dereference

First published (updated )

MIT Kerberos 5 ApplicationNull Pointer Dereference

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2025 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203