Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2007-5939

Опубликовано: 06 дек. 2007
Источник: nvd
CVSS2: 10
EPSS Низкий

Описание

The gss_userok function in appl/ftp/ftpd/gss_userok.c in Heimdal 0.7.2 does not allocate memory for the ticketfile pointer before calling free, which allows remote attackers to have an unknown impact via an invalid username. NOTE: the vulnerability was originally reported for ftpd.c, but this is incorrect.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:heimdal:heimdal:0.7.2:*:*:*:*:*:*:*

EPSS

Процентиль: 81%
0.01661
Низкий

10 Critical

CVSS2

Дефекты

CWE-119

Связанные уязвимости

ubuntu
почти 18 лет назад

The gss_userok function in appl/ftp/ftpd/gss_userok.c in Heimdal 0.7.2 does not allocate memory for the ticketfile pointer before calling free, which allows remote attackers to have an unknown impact via an invalid username. NOTE: the vulnerability was originally reported for ftpd.c, but this is incorrect.

debian
почти 18 лет назад

The gss_userok function in appl/ftp/ftpd/gss_userok.c in Heimdal 0.7.2 ...

github
больше 3 лет назад

The gss_userok function in appl/ftp/ftpd/gss_userok.c in Heimdal 0.7.2 does not allocate memory for the ticketfile pointer before calling free, which allows remote attackers to have an unknown impact via an invalid username. NOTE: the vulnerability was originally reported for ftpd.c, but this is incorrect.

EPSS

Процентиль: 81%
0.01661
Низкий

10 Critical

CVSS2

Дефекты

CWE-119