Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2015-2698

Опубликовано: 13 нояб. 2015
Источник: nvd
CVSS2: 8.5
EPSS Низкий

Описание

The iakerb_gss_export_sec_context function in lib/gssapi/krb5/iakerb.c in MIT Kerberos 5 (aka krb5) 1.14 pre-release 2015-09-14 improperly accesses a certain pointer, which allows remote authenticated users to cause a denial of service (memory corruption) or possibly have unspecified other impact by interacting with an application that calls the gss_export_sec_context function. NOTE: this vulnerability exists because of an incorrect fix for CVE-2015-2696.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:mit:kerberos_5:1.14:beta2:*:*:*:*:*:*

EPSS

Процентиль: 78%
0.01174
Низкий

8.5 High

CVSS2

Дефекты

CWE-119

Связанные уязвимости

ubuntu
около 10 лет назад

The iakerb_gss_export_sec_context function in lib/gssapi/krb5/iakerb.c in MIT Kerberos 5 (aka krb5) 1.14 pre-release 2015-09-14 improperly accesses a certain pointer, which allows remote authenticated users to cause a denial of service (memory corruption) or possibly have unspecified other impact by interacting with an application that calls the gss_export_sec_context function. NOTE: this vulnerability exists because of an incorrect fix for CVE-2015-2696.

redhat
больше 10 лет назад

The iakerb_gss_export_sec_context function in lib/gssapi/krb5/iakerb.c in MIT Kerberos 5 (aka krb5) 1.14 pre-release 2015-09-14 improperly accesses a certain pointer, which allows remote authenticated users to cause a denial of service (memory corruption) or possibly have unspecified other impact by interacting with an application that calls the gss_export_sec_context function. NOTE: this vulnerability exists because of an incorrect fix for CVE-2015-2696.

debian
около 10 лет назад

The iakerb_gss_export_sec_context function in lib/gssapi/krb5/iakerb.c ...

suse-cvrf
около 10 лет назад

Security update for krb5

suse-cvrf
около 10 лет назад

Security update for krb5

EPSS

Процентиль: 78%
0.01174
Низкий

8.5 High

CVSS2

Дефекты

CWE-119