Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2021-37750

Опубликовано: 23 авг. 2021
Источник: debian
EPSS Низкий

Описание

The Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) before 1.18.5 and 1.19.x before 1.19.3 has a NULL pointer dereference in kdc/do_tgs_req.c via a FAST inner body that lacks a server field.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
krb5fixed1.18.3-7package
krb5fixed1.18.3-6+deb11u1bullseyepackage
krb5fixed1.17-3+deb10u3busterpackage

Примечания

  • https://github.com/krb5/krb5/commit/d775c95af7606a51bf79547a94fa52ddd1cb7f49

EPSS

Процентиль: 65%
0.00495
Низкий

Связанные уязвимости

CVSS3: 6.5
ubuntu
около 4 лет назад

The Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) before 1.18.5 and 1.19.x before 1.19.3 has a NULL pointer dereference in kdc/do_tgs_req.c via a FAST inner body that lacks a server field.

CVSS3: 6.5
redhat
около 4 лет назад

The Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) before 1.18.5 and 1.19.x before 1.19.3 has a NULL pointer dereference in kdc/do_tgs_req.c via a FAST inner body that lacks a server field.

CVSS3: 6.5
nvd
около 4 лет назад

The Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) before 1.18.5 and 1.19.x before 1.19.3 has a NULL pointer dereference in kdc/do_tgs_req.c via a FAST inner body that lacks a server field.

CVSS3: 6.5
msrc
около 4 лет назад

The Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) before 1.18.5 and 1.19.x before 1.19.3 has a NULL pointer dereference in kdc/do_tgs_req.c via a FAST inner body that lacks a server field.

suse-cvrf
около 4 лет назад

Security update for krb5

EPSS

Процентиль: 65%
0.00495
Низкий
Уязвимость CVE-2021-37750