Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-f4hc-rvh5-8phv

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 5.3

Описание

A Reachable Assertion issue was discovered in the KDC in MIT Kerberos 5 (aka krb5) before 1.17. If an attacker can obtain a krbtgt ticket using an older encryption type (single-DES, triple-DES, or RC4), the attacker can crash the KDC by making an S4U2Self request.

A Reachable Assertion issue was discovered in the KDC in MIT Kerberos 5 (aka krb5) before 1.17. If an attacker can obtain a krbtgt ticket using an older encryption type (single-DES, triple-DES, or RC4), the attacker can crash the KDC by making an S4U2Self request.

EPSS

Процентиль: 89%
0.04381
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-617

Связанные уязвимости

CVSS3: 5.3
ubuntu
около 7 лет назад

A Reachable Assertion issue was discovered in the KDC in MIT Kerberos 5 (aka krb5) before 1.17. If an attacker can obtain a krbtgt ticket using an older encryption type (single-DES, triple-DES, or RC4), the attacker can crash the KDC by making an S4U2Self request.

CVSS3: 5.3
redhat
около 7 лет назад

A Reachable Assertion issue was discovered in the KDC in MIT Kerberos 5 (aka krb5) before 1.17. If an attacker can obtain a krbtgt ticket using an older encryption type (single-DES, triple-DES, or RC4), the attacker can crash the KDC by making an S4U2Self request.

CVSS3: 5.3
nvd
около 7 лет назад

A Reachable Assertion issue was discovered in the KDC in MIT Kerberos 5 (aka krb5) before 1.17. If an attacker can obtain a krbtgt ticket using an older encryption type (single-DES, triple-DES, or RC4), the attacker can crash the KDC by making an S4U2Self request.

CVSS3: 5.3
debian
около 7 лет назад

A Reachable Assertion issue was discovered in the KDC in MIT Kerberos ...

suse-cvrf
около 7 лет назад

Security update for krb5

EPSS

Процентиль: 89%
0.04381
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-617