Описание
It is possible to bypass the Kerberos pre-authentication check in Apache Kerby by sending a PA-DATA with an unrecognized or unsupported type. Users are recommended to upgrade to version 2.1.2, which fixes this issue.
Ссылки
EPSS
Процентиль: 25%
0.00321
Низкий
7.3 High
CVSS3
Дефекты
CWE-304
CWE-358
Связанные уязвимости
CVSS3: 7.3
redhat
3 месяца назад
It is possible to bypass the Kerberos pre-authentication check in Apache Kerby by sending a PA-DATA with an unrecognized or unsupported type. Users are recommended to upgrade to version 2.1.2, which fixes this issue.
CVSS3: 7.3
github
3 месяца назад
It is possible to bypass the Kerberos pre-authentication check in Apache Kerby by sending a PA-DATA with an unrecognized or unsupported type. Users are recommended to upgrade to version 2.1.2, which fixes this issue.
EPSS
Процентиль: 25%
0.00321
Низкий
7.3 High
CVSS3
Дефекты
CWE-304
CWE-358