Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 14

Количество 14

github логотип

GHSA-f7p3-6rhj-p7jv

3 месяца назад

In MIT Kerberos 5 (aka krb5) before 1.22.3, there is an integer underflow and resultant out-of-bounds read if an application calls gss_accept_sec_context() on a system with a NegoEx mechanism registered in /etc/gss/mech. An unauthenticated remote attacker can trigger this, possibly causing the process to terminate in parse_message.

CVSS3: 5.9
EPSS: Низкий
ubuntu логотип

CVE-2026-40356

3 месяца назад

In MIT Kerberos 5 (aka krb5) before 1.22.3, there is an integer underflow and resultant out-of-bounds read if an application calls gss_accept_sec_context() on a system with a NegoEx mechanism registered in /etc/gss/mech. An unauthenticated remote attacker can trigger this, possibly causing the process to terminate in parse_message.

CVSS3: 5.9
EPSS: Низкий
redhat логотип

CVE-2026-40356

3 месяца назад

In MIT Kerberos 5 (aka krb5) before 1.22.3, there is an integer underflow and resultant out-of-bounds read if an application calls gss_accept_sec_context() on a system with a NegoEx mechanism registered in /etc/gss/mech. An unauthenticated remote attacker can trigger this, possibly causing the process to terminate in parse_message.

CVSS3: 5.9
EPSS: Низкий
nvd логотип

CVE-2026-40356

3 месяца назад

In MIT Kerberos 5 (aka krb5) before 1.22.3, there is an integer underflow and resultant out-of-bounds read if an application calls gss_accept_sec_context() on a system with a NegoEx mechanism registered in /etc/gss/mech. An unauthenticated remote attacker can trigger this, possibly causing the process to terminate in parse_message.

CVSS3: 5.9
EPSS: Низкий
msrc логотип

CVE-2026-40356

3 месяца назад

In MIT Kerberos 5 (aka krb5) before 1.22.3, there is an integer underflow and resultant out-of-bounds read if an application calls gss_accept_sec_context() on a system with a NegoEx mechanism registered in /etc/gss/mech. An unauthenticated remote attacker can trigger this, possibly causing the process to terminate in parse_message.

CVSS3: 5.9
EPSS: Низкий
debian логотип

CVE-2026-40356

3 месяца назад

In MIT Kerberos 5 (aka krb5) before 1.22.3, there is an integer underf ...

CVSS3: 5.9
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2026:21021-1

около 1 месяца назад

Security update for krb5

EPSS: Низкий
rocky логотип

RLSA-2026:19357

2 месяца назад

Important: krb5 security update

EPSS: Низкий
rocky логотип

RLSA-2026:19145

2 месяца назад

Important: krb5 security update

EPSS: Низкий
rocky логотип

RLSA-2026:16799

3 месяца назад

Important: krb5 security update

EPSS: Низкий
oracle-oval логотип

ELSA-2026-19357

около 1 месяца назад

ELSA-2026-19357: krb5 security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2026-19145

17 дней назад

ELSA-2026-19145: krb5 security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2026-16799

3 месяца назад

ELSA-2026-16799: krb5 security update (IMPORTANT)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:2848-1

22 дня назад

Security update for krb5, krb5-mini

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-f7p3-6rhj-p7jv

In MIT Kerberos 5 (aka krb5) before 1.22.3, there is an integer underflow and resultant out-of-bounds read if an application calls gss_accept_sec_context() on a system with a NegoEx mechanism registered in /etc/gss/mech. An unauthenticated remote attacker can trigger this, possibly causing the process to terminate in parse_message.

CVSS3: 5.9
1%
Низкий
3 месяца назад
ubuntu логотип
CVE-2026-40356

In MIT Kerberos 5 (aka krb5) before 1.22.3, there is an integer underflow and resultant out-of-bounds read if an application calls gss_accept_sec_context() on a system with a NegoEx mechanism registered in /etc/gss/mech. An unauthenticated remote attacker can trigger this, possibly causing the process to terminate in parse_message.

CVSS3: 5.9
1%
Низкий
3 месяца назад
redhat логотип
CVE-2026-40356

In MIT Kerberos 5 (aka krb5) before 1.22.3, there is an integer underflow and resultant out-of-bounds read if an application calls gss_accept_sec_context() on a system with a NegoEx mechanism registered in /etc/gss/mech. An unauthenticated remote attacker can trigger this, possibly causing the process to terminate in parse_message.

CVSS3: 5.9
1%
Низкий
3 месяца назад
nvd логотип
CVE-2026-40356

In MIT Kerberos 5 (aka krb5) before 1.22.3, there is an integer underflow and resultant out-of-bounds read if an application calls gss_accept_sec_context() on a system with a NegoEx mechanism registered in /etc/gss/mech. An unauthenticated remote attacker can trigger this, possibly causing the process to terminate in parse_message.

CVSS3: 5.9
1%
Низкий
3 месяца назад
msrc логотип
CVE-2026-40356

In MIT Kerberos 5 (aka krb5) before 1.22.3, there is an integer underflow and resultant out-of-bounds read if an application calls gss_accept_sec_context() on a system with a NegoEx mechanism registered in /etc/gss/mech. An unauthenticated remote attacker can trigger this, possibly causing the process to terminate in parse_message.

CVSS3: 5.9
1%
Низкий
3 месяца назад
debian логотип
CVE-2026-40356

In MIT Kerberos 5 (aka krb5) before 1.22.3, there is an integer underf ...

CVSS3: 5.9
1%
Низкий
3 месяца назад
suse-cvrf логотип
openSUSE-SU-2026:21021-1

Security update for krb5

около 1 месяца назад
rocky логотип
RLSA-2026:19357

Important: krb5 security update

2 месяца назад
rocky логотип
RLSA-2026:19145

Important: krb5 security update

2 месяца назад
rocky логотип
RLSA-2026:16799

Important: krb5 security update

3 месяца назад
oracle-oval логотип
ELSA-2026-19357

ELSA-2026-19357: krb5 security update (IMPORTANT)

около 1 месяца назад
oracle-oval логотип
ELSA-2026-19145

ELSA-2026-19145: krb5 security update (IMPORTANT)

17 дней назад
oracle-oval логотип
ELSA-2026-16799

ELSA-2026-16799: krb5 security update (IMPORTANT)

3 месяца назад
suse-cvrf логотип
SUSE-SU-2026:2848-1

Security update for krb5, krb5-mini

22 дня назад

Уязвимостей на страницу