Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-cfj4-7v4x-xmrv

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The gss_userok function in appl/ftp/ftpd/gss_userok.c in Heimdal 0.7.2 does not allocate memory for the ticketfile pointer before calling free, which allows remote attackers to have an unknown impact via an invalid username. NOTE: the vulnerability was originally reported for ftpd.c, but this is incorrect.

The gss_userok function in appl/ftp/ftpd/gss_userok.c in Heimdal 0.7.2 does not allocate memory for the ticketfile pointer before calling free, which allows remote attackers to have an unknown impact via an invalid username. NOTE: the vulnerability was originally reported for ftpd.c, but this is incorrect.

EPSS

Процентиль: 81%
0.01661
Низкий

Дефекты

CWE-119

Связанные уязвимости

ubuntu
почти 18 лет назад

The gss_userok function in appl/ftp/ftpd/gss_userok.c in Heimdal 0.7.2 does not allocate memory for the ticketfile pointer before calling free, which allows remote attackers to have an unknown impact via an invalid username. NOTE: the vulnerability was originally reported for ftpd.c, but this is incorrect.

nvd
почти 18 лет назад

The gss_userok function in appl/ftp/ftpd/gss_userok.c in Heimdal 0.7.2 does not allocate memory for the ticketfile pointer before calling free, which allows remote attackers to have an unknown impact via an invalid username. NOTE: the vulnerability was originally reported for ftpd.c, but this is incorrect.

debian
почти 18 лет назад

The gss_userok function in appl/ftp/ftpd/gss_userok.c in Heimdal 0.7.2 ...

EPSS

Процентиль: 81%
0.01661
Низкий

Дефекты

CWE-119