Логотип exploitDog
bind:"CVE-2016-3120" OR bind:"CVE-2016-3119"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2016-3120" OR bind:"CVE-2016-3119"

Количество 16

Количество 16

oracle-oval логотип

ELSA-2016-2591

почти 9 лет назад

ELSA-2016-2591: krb5 security, bug fix, and enhancement update (LOW)

EPSS: Низкий
ubuntu логотип

CVE-2016-3120

около 9 лет назад

The validate_as_request function in kdc_util.c in the Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) before 1.13.6 and 1.4.x before 1.14.3, when restrict_anonymous_to_tgt is enabled, uses an incorrect client data structure, which allows remote authenticated users to cause a denial of service (NULL pointer dereference and daemon crash) via an S4U2Self request.

CVSS3: 6.5
EPSS: Низкий
redhat логотип

CVE-2016-3120

около 9 лет назад

The validate_as_request function in kdc_util.c in the Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) before 1.13.6 and 1.4.x before 1.14.3, when restrict_anonymous_to_tgt is enabled, uses an incorrect client data structure, which allows remote authenticated users to cause a denial of service (NULL pointer dereference and daemon crash) via an S4U2Self request.

CVSS3: 5.3
EPSS: Низкий
nvd логотип

CVE-2016-3120

около 9 лет назад

The validate_as_request function in kdc_util.c in the Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) before 1.13.6 and 1.4.x before 1.14.3, when restrict_anonymous_to_tgt is enabled, uses an incorrect client data structure, which allows remote authenticated users to cause a denial of service (NULL pointer dereference and daemon crash) via an S4U2Self request.

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2016-3120

около 9 лет назад

The validate_as_request function in kdc_util.c in the Key Distribution ...

CVSS3: 6.5
EPSS: Низкий
ubuntu логотип

CVE-2016-3119

больше 9 лет назад

The process_db_args function in plugins/kdb/ldap/libkdb_ldap/ldap_principal2.c in the LDAP KDB module in kadmind in MIT Kerberos 5 (aka krb5) through 1.13.4 and 1.14.x through 1.14.1 mishandles the DB argument, which allows remote authenticated users to cause a denial of service (NULL pointer dereference and daemon crash) via a crafted request to modify a principal.

CVSS3: 5.3
EPSS: Низкий
redhat логотип

CVE-2016-3119

больше 9 лет назад

The process_db_args function in plugins/kdb/ldap/libkdb_ldap/ldap_principal2.c in the LDAP KDB module in kadmind in MIT Kerberos 5 (aka krb5) through 1.13.4 and 1.14.x through 1.14.1 mishandles the DB argument, which allows remote authenticated users to cause a denial of service (NULL pointer dereference and daemon crash) via a crafted request to modify a principal.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-2016-3119

больше 9 лет назад

The process_db_args function in plugins/kdb/ldap/libkdb_ldap/ldap_principal2.c in the LDAP KDB module in kadmind in MIT Kerberos 5 (aka krb5) through 1.13.4 and 1.14.x through 1.14.1 mishandles the DB argument, which allows remote authenticated users to cause a denial of service (NULL pointer dereference and daemon crash) via a crafted request to modify a principal.

CVSS3: 5.3
EPSS: Низкий
debian логотип

CVE-2016-3119

больше 9 лет назад

The process_db_args function in plugins/kdb/ldap/libkdb_ldap/ldap_prin ...

CVSS3: 5.3
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2016:2268-1

около 9 лет назад

Security update for krb5

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2016:2136-1

около 9 лет назад

Security update for krb5

EPSS: Низкий
github логотип

GHSA-8q8p-vxj6-fg2g

больше 3 лет назад

The validate_as_request function in kdc_util.c in the Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) before 1.13.6 and 1.4.x before 1.14.3, when restrict_anonymous_to_tgt is enabled, uses an incorrect client data structure, which allows remote authenticated users to cause a denial of service (NULL pointer dereference and daemon crash) via an S4U2Self request.

CVSS3: 6.5
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2016:1072-1

больше 9 лет назад

Security update for krb5

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2016:1088-1

больше 9 лет назад

Security update for krb5

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2016:0994-1

больше 9 лет назад

Security update for krb5

EPSS: Низкий
github логотип

GHSA-qq9x-4x4m-294x

больше 3 лет назад

The process_db_args function in plugins/kdb/ldap/libkdb_ldap/ldap_principal2.c in the LDAP KDB module in kadmind in MIT Kerberos 5 (aka krb5) through 1.13.4 and 1.14.x through 1.14.1 mishandles the DB argument, which allows remote authenticated users to cause a denial of service (NULL pointer dereference and daemon crash) via a crafted request to modify a principal.

CVSS3: 5.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
oracle-oval логотип
ELSA-2016-2591

ELSA-2016-2591: krb5 security, bug fix, and enhancement update (LOW)

почти 9 лет назад
ubuntu логотип
CVE-2016-3120

The validate_as_request function in kdc_util.c in the Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) before 1.13.6 and 1.4.x before 1.14.3, when restrict_anonymous_to_tgt is enabled, uses an incorrect client data structure, which allows remote authenticated users to cause a denial of service (NULL pointer dereference and daemon crash) via an S4U2Self request.

CVSS3: 6.5
2%
Низкий
около 9 лет назад
redhat логотип
CVE-2016-3120

The validate_as_request function in kdc_util.c in the Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) before 1.13.6 and 1.4.x before 1.14.3, when restrict_anonymous_to_tgt is enabled, uses an incorrect client data structure, which allows remote authenticated users to cause a denial of service (NULL pointer dereference and daemon crash) via an S4U2Self request.

CVSS3: 5.3
2%
Низкий
около 9 лет назад
nvd логотип
CVE-2016-3120

The validate_as_request function in kdc_util.c in the Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) before 1.13.6 and 1.4.x before 1.14.3, when restrict_anonymous_to_tgt is enabled, uses an incorrect client data structure, which allows remote authenticated users to cause a denial of service (NULL pointer dereference and daemon crash) via an S4U2Self request.

CVSS3: 6.5
2%
Низкий
около 9 лет назад
debian логотип
CVE-2016-3120

The validate_as_request function in kdc_util.c in the Key Distribution ...

CVSS3: 6.5
2%
Низкий
около 9 лет назад
ubuntu логотип
CVE-2016-3119

The process_db_args function in plugins/kdb/ldap/libkdb_ldap/ldap_principal2.c in the LDAP KDB module in kadmind in MIT Kerberos 5 (aka krb5) through 1.13.4 and 1.14.x through 1.14.1 mishandles the DB argument, which allows remote authenticated users to cause a denial of service (NULL pointer dereference and daemon crash) via a crafted request to modify a principal.

CVSS3: 5.3
6%
Низкий
больше 9 лет назад
redhat логотип
CVE-2016-3119

The process_db_args function in plugins/kdb/ldap/libkdb_ldap/ldap_principal2.c in the LDAP KDB module in kadmind in MIT Kerberos 5 (aka krb5) through 1.13.4 and 1.14.x through 1.14.1 mishandles the DB argument, which allows remote authenticated users to cause a denial of service (NULL pointer dereference and daemon crash) via a crafted request to modify a principal.

CVSS2: 2.1
6%
Низкий
больше 9 лет назад
nvd логотип
CVE-2016-3119

The process_db_args function in plugins/kdb/ldap/libkdb_ldap/ldap_principal2.c in the LDAP KDB module in kadmind in MIT Kerberos 5 (aka krb5) through 1.13.4 and 1.14.x through 1.14.1 mishandles the DB argument, which allows remote authenticated users to cause a denial of service (NULL pointer dereference and daemon crash) via a crafted request to modify a principal.

CVSS3: 5.3
6%
Низкий
больше 9 лет назад
debian логотип
CVE-2016-3119

The process_db_args function in plugins/kdb/ldap/libkdb_ldap/ldap_prin ...

CVSS3: 5.3
6%
Низкий
больше 9 лет назад
suse-cvrf логотип
openSUSE-SU-2016:2268-1

Security update for krb5

2%
Низкий
около 9 лет назад
suse-cvrf логотип
SUSE-SU-2016:2136-1

Security update for krb5

2%
Низкий
около 9 лет назад
github логотип
GHSA-8q8p-vxj6-fg2g

The validate_as_request function in kdc_util.c in the Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) before 1.13.6 and 1.4.x before 1.14.3, when restrict_anonymous_to_tgt is enabled, uses an incorrect client data structure, which allows remote authenticated users to cause a denial of service (NULL pointer dereference and daemon crash) via an S4U2Self request.

CVSS3: 6.5
2%
Низкий
больше 3 лет назад
suse-cvrf логотип
openSUSE-SU-2016:1072-1

Security update for krb5

6%
Низкий
больше 9 лет назад
suse-cvrf логотип
SUSE-SU-2016:1088-1

Security update for krb5

6%
Низкий
больше 9 лет назад
suse-cvrf логотип
SUSE-SU-2016:0994-1

Security update for krb5

6%
Низкий
больше 9 лет назад
github логотип
GHSA-qq9x-4x4m-294x

The process_db_args function in plugins/kdb/ldap/libkdb_ldap/ldap_principal2.c in the LDAP KDB module in kadmind in MIT Kerberos 5 (aka krb5) through 1.13.4 and 1.14.x through 1.14.1 mishandles the DB argument, which allows remote authenticated users to cause a denial of service (NULL pointer dereference and daemon crash) via a crafted request to modify a principal.

CVSS3: 5.3
6%
Низкий
больше 3 лет назад

Уязвимостей на страницу