Описание
It is possible to bypass the Kerberos pre-authentication check in Apache Kerby by sending a PA-DATA with an unrecognized or unsupported type. Users are recommended to upgrade to version 2.1.2, which fixes this issue.
Ссылки
EPSS
Процентиль: 24%
0.00321
Низкий
7.3 High
CVSS3
Дефекты
CWE-304
CWE-358
Связанные уязвимости
CVSS3: 7.3
redhat
около 1 месяца назад
It is possible to bypass the Kerberos pre-authentication check in Apache Kerby by sending a PA-DATA with an unrecognized or unsupported type. Users are recommended to upgrade to version 2.1.2, which fixes this issue.
CVSS3: 7.3
github
около 1 месяца назад
It is possible to bypass the Kerberos pre-authentication check in Apache Kerby by sending a PA-DATA with an unrecognized or unsupported type. Users are recommended to upgrade to version 2.1.2, which fixes this issue.
EPSS
Процентиль: 24%
0.00321
Низкий
7.3 High
CVSS3
Дефекты
CWE-304
CWE-358