Количество 11
Количество 11
CVE-2026-58216
An authenticated user could possibly crash a KDC process. A kpasswd packet that contains malformed ASN.1 might cause the server to access 6 bytes of unallocated memory. This memory is not exposed to the user, but in some circumstances the server could crash.
CVE-2026-58216
An out-of-bounds read flaw was found in Samba's Kerberos Key Distribution Center's (KDC) password change (kpasswd) service. When processing malformed ASN.1-encoded Kerberos password change request, Samba server miscalculates the structure size and attempts to read up to six bytes beyond the end of the allocated buffer. While this out-of-bounds read typically results in a harmless decryption failure, if the read hits unmapped memory, it causes the KDC process to crash. An authenticated attacker can send a specially crafted kpasswd request containing malformed ASN.1 data to trigger the out-of-bounds read, which may cause the KDC process to terminate, resulting in a denial of service.
CVE-2026-58216
An out-of-bounds read flaw was found in Samba's Kerberos Key Distribution Center's (KDC) password change (kpasswd) service. When processing malformed ASN.1-encoded Kerberos password change request, Samba server miscalculates the structure size and attempts to read up to six bytes beyond the end of the allocated buffer. While this out-of-bounds read typically results in a harmless decryption failure, if the read hits unmapped memory, it causes the KDC process to crash. An authenticated attacker can send a specially crafted kpasswd request containing malformed ASN.1 data to trigger the out-of-bounds read, which may cause the KDC process to terminate, resulting in a denial of service.
CVE-2026-58216
An out-of-bounds read flaw was found in Samba's Kerberos Key Distribut ...
GHSA-vc9h-gm8g-6j4x
An out-of-bounds read flaw was found in Samba's Kerberos Key Distribution Center's (KDC) password change (kpasswd) service. When processing malformed ASN.1-encoded Kerberos password change request, Samba server miscalculates the structure size and attempts to read up to six bytes beyond the end of the allocated buffer. While this out-of-bounds read typically results in a harmless decryption failure, if the read hits unmapped memory, it causes the KDC process to crash. An authenticated attacker can send a specially crafted kpasswd request containing malformed ASN.1 data to trigger the out-of-bounds read, which may cause the KDC process to terminate, resulting in a denial of service.
openSUSE-SU-2026:21475-1
Security update for samba
SUSE-SU-2026:3367-1
Security update for samba
SUSE-SU-2026:3365-1
Security update for samba
SUSE-SU-2026:3364-1
Security update for samba
SUSE-SU-2026:3363-1
Security update for samba
SUSE-SU-2026:3362-1
Security update for samba
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-58216 An authenticated user could possibly crash a KDC process. A kpasswd packet that contains malformed ASN.1 might cause the server to access 6 bytes of unallocated memory. This memory is not exposed to the user, but in some circumstances the server could crash. | CVSS3: 5.3 | 1% Низкий | 7 дней назад | |
CVE-2026-58216 An out-of-bounds read flaw was found in Samba's Kerberos Key Distribution Center's (KDC) password change (kpasswd) service. When processing malformed ASN.1-encoded Kerberos password change request, Samba server miscalculates the structure size and attempts to read up to six bytes beyond the end of the allocated buffer. While this out-of-bounds read typically results in a harmless decryption failure, if the read hits unmapped memory, it causes the KDC process to crash. An authenticated attacker can send a specially crafted kpasswd request containing malformed ASN.1 data to trigger the out-of-bounds read, which may cause the KDC process to terminate, resulting in a denial of service. | CVSS3: 5.3 | 1% Низкий | 7 дней назад | |
CVE-2026-58216 An out-of-bounds read flaw was found in Samba's Kerberos Key Distribution Center's (KDC) password change (kpasswd) service. When processing malformed ASN.1-encoded Kerberos password change request, Samba server miscalculates the structure size and attempts to read up to six bytes beyond the end of the allocated buffer. While this out-of-bounds read typically results in a harmless decryption failure, if the read hits unmapped memory, it causes the KDC process to crash. An authenticated attacker can send a specially crafted kpasswd request containing malformed ASN.1 data to trigger the out-of-bounds read, which may cause the KDC process to terminate, resulting in a denial of service. | CVSS3: 5.3 | 1% Низкий | 5 дней назад | |
CVE-2026-58216 An out-of-bounds read flaw was found in Samba's Kerberos Key Distribut ... | CVSS3: 5.3 | 1% Низкий | 5 дней назад | |
GHSA-vc9h-gm8g-6j4x An out-of-bounds read flaw was found in Samba's Kerberos Key Distribution Center's (KDC) password change (kpasswd) service. When processing malformed ASN.1-encoded Kerberos password change request, Samba server miscalculates the structure size and attempts to read up to six bytes beyond the end of the allocated buffer. While this out-of-bounds read typically results in a harmless decryption failure, if the read hits unmapped memory, it causes the KDC process to crash. An authenticated attacker can send a specially crafted kpasswd request containing malformed ASN.1 data to trigger the out-of-bounds read, which may cause the KDC process to terminate, resulting in a denial of service. | CVSS3: 5.3 | 1% Низкий | 4 дня назад | |
openSUSE-SU-2026:21475-1 Security update for samba | 6 дней назад | |||
SUSE-SU-2026:3367-1 Security update for samba | 7 дней назад | |||
SUSE-SU-2026:3365-1 Security update for samba | 7 дней назад | |||
SUSE-SU-2026:3364-1 Security update for samba | 7 дней назад | |||
SUSE-SU-2026:3363-1 Security update for samba | 7 дней назад | |||
SUSE-SU-2026:3362-1 Security update for samba | 7 дней назад |
Уязвимостей на страницу