Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-6243-f9c4-77f4

Опубликовано: 02 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 6.5

Описание

Use-after-free vulnerability in kadmin/server/server_stubs.c in kadmind in MIT Kerberos 5 (aka krb5) 1.5 through 1.6.3 allows remote authenticated users to cause a denial of service (daemon crash) via a request from a kadmin client that sends an invalid API version number.

Use-after-free vulnerability in kadmin/server/server_stubs.c in kadmind in MIT Kerberos 5 (aka krb5) 1.5 through 1.6.3 allows remote authenticated users to cause a denial of service (daemon crash) via a request from a kadmin client that sends an invalid API version number.

EPSS

Процентиль: 84%
0.02284
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-416

Связанные уязвимости

CVSS3: 6.5
ubuntu
около 15 лет назад

Use-after-free vulnerability in kadmin/server/server_stubs.c in kadmind in MIT Kerberos 5 (aka krb5) 1.5 through 1.6.3 allows remote authenticated users to cause a denial of service (daemon crash) via a request from a kadmin client that sends an invalid API version number.

redhat
больше 15 лет назад

Use-after-free vulnerability in kadmin/server/server_stubs.c in kadmind in MIT Kerberos 5 (aka krb5) 1.5 through 1.6.3 allows remote authenticated users to cause a denial of service (daemon crash) via a request from a kadmin client that sends an invalid API version number.

CVSS3: 6.5
nvd
около 15 лет назад

Use-after-free vulnerability in kadmin/server/server_stubs.c in kadmind in MIT Kerberos 5 (aka krb5) 1.5 through 1.6.3 allows remote authenticated users to cause a denial of service (daemon crash) via a request from a kadmin client that sends an invalid API version number.

CVSS3: 6.5
debian
около 15 лет назад

Use-after-free vulnerability in kadmin/server/server_stubs.c in kadmin ...

oracle-oval
около 15 лет назад

ELSA-2010-0343: krb5 security and bug fix update (IMPORTANT)

EPSS

Процентиль: 84%
0.02284
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-416