Описание
Heimdal before 7.7.1 allows attackers to cause a NULL pointer dereference in a SPNEGO acceptor via a preferred_mech_type of GSS_C_NO_OID and a nonzero initial_response value to send_accept.
Ссылки
- PatchThird Party Advisory
- Third Party Advisory
- PatchThird Party Advisory
- Third Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 7.7.1 (исключая)
cpe:2.3:a:heimdal_project:heimdal:*:*:*:*:*:*:*:*
EPSS
Процентиль: 59%
0.00379
Низкий
7.5 High
CVSS3
Дефекты
CWE-476
CWE-476
Связанные уязвимости
CVSS3: 7.5
ubuntu
около 3 лет назад
Heimdal before 7.7.1 allows attackers to cause a NULL pointer dereference in a SPNEGO acceptor via a preferred_mech_type of GSS_C_NO_OID and a nonzero initial_response value to send_accept.
CVSS3: 7.5
debian
около 3 лет назад
Heimdal before 7.7.1 allows attackers to cause a NULL pointer derefere ...
EPSS
Процентиль: 59%
0.00379
Низкий
7.5 High
CVSS3
Дефекты
CWE-476
CWE-476