Логотип exploitDog
bind:"CVE-2025-3576"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2025-3576"

Количество 9

Количество 9

ubuntu логотип

CVE-2025-3576

4 месяца назад

A vulnerability in the MIT Kerberos implementation allows GSSAPI-protected messages using RC4-HMAC-MD5 to be spoofed due to weaknesses in the MD5 checksum design. If RC4 is preferred over stronger encryption types, an attacker could exploit MD5 collisions to forge message integrity codes. This may lead to unauthorized message tampering.

CVSS3: 5.9
EPSS: Низкий
redhat логотип

CVE-2025-3576

4 месяца назад

A vulnerability in the MIT Kerberos implementation allows GSSAPI-protected messages using RC4-HMAC-MD5 to be spoofed due to weaknesses in the MD5 checksum design. If RC4 is preferred over stronger encryption types, an attacker could exploit MD5 collisions to forge message integrity codes. This may lead to unauthorized message tampering.

CVSS3: 5.9
EPSS: Низкий
nvd логотип

CVE-2025-3576

4 месяца назад

A vulnerability in the MIT Kerberos implementation allows GSSAPI-protected messages using RC4-HMAC-MD5 to be spoofed due to weaknesses in the MD5 checksum design. If RC4 is preferred over stronger encryption types, an attacker could exploit MD5 collisions to forge message integrity codes. This may lead to unauthorized message tampering.

CVSS3: 5.9
EPSS: Низкий
debian логотип

CVE-2025-3576

4 месяца назад

A vulnerability in the MIT Kerberos implementation allows GSSAPI-prote ...

CVSS3: 5.9
EPSS: Низкий
rocky логотип

RLSA-2025:8411

8 дней назад

Moderate: krb5 security update

EPSS: Низкий
github логотип

GHSA-rfh5-gx7w-h7v7

4 месяца назад

A vulnerability in the MIT Kerberos implementation allows GSSAPI-protected messages using RC4-HMAC-MD5 to be spoofed due to weaknesses in the MD5 checksum design. If RC4 is preferred over stronger encryption types, an attacker could exploit MD5 collisions to forge message integrity codes. This may lead to unauthorized message tampering.

CVSS3: 5.9
EPSS: Низкий
oracle-oval логотип

ELSA-2025-9430

около 1 месяца назад

ELSA-2025-9430: krb5 security update (MODERATE)

EPSS: Низкий
oracle-oval логотип

ELSA-2025-9418

около 1 месяца назад

ELSA-2025-9418: krb5 security update (MODERATE)

EPSS: Низкий
oracle-oval логотип

ELSA-2025-8411

2 месяца назад

ELSA-2025-8411: krb5 security update (MODERATE)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2025-3576

A vulnerability in the MIT Kerberos implementation allows GSSAPI-protected messages using RC4-HMAC-MD5 to be spoofed due to weaknesses in the MD5 checksum design. If RC4 is preferred over stronger encryption types, an attacker could exploit MD5 collisions to forge message integrity codes. This may lead to unauthorized message tampering.

CVSS3: 5.9
0%
Низкий
4 месяца назад
redhat логотип
CVE-2025-3576

A vulnerability in the MIT Kerberos implementation allows GSSAPI-protected messages using RC4-HMAC-MD5 to be spoofed due to weaknesses in the MD5 checksum design. If RC4 is preferred over stronger encryption types, an attacker could exploit MD5 collisions to forge message integrity codes. This may lead to unauthorized message tampering.

CVSS3: 5.9
0%
Низкий
4 месяца назад
nvd логотип
CVE-2025-3576

A vulnerability in the MIT Kerberos implementation allows GSSAPI-protected messages using RC4-HMAC-MD5 to be spoofed due to weaknesses in the MD5 checksum design. If RC4 is preferred over stronger encryption types, an attacker could exploit MD5 collisions to forge message integrity codes. This may lead to unauthorized message tampering.

CVSS3: 5.9
0%
Низкий
4 месяца назад
debian логотип
CVE-2025-3576

A vulnerability in the MIT Kerberos implementation allows GSSAPI-prote ...

CVSS3: 5.9
0%
Низкий
4 месяца назад
rocky логотип
RLSA-2025:8411

Moderate: krb5 security update

0%
Низкий
8 дней назад
github логотип
GHSA-rfh5-gx7w-h7v7

A vulnerability in the MIT Kerberos implementation allows GSSAPI-protected messages using RC4-HMAC-MD5 to be spoofed due to weaknesses in the MD5 checksum design. If RC4 is preferred over stronger encryption types, an attacker could exploit MD5 collisions to forge message integrity codes. This may lead to unauthorized message tampering.

CVSS3: 5.9
0%
Низкий
4 месяца назад
oracle-oval логотип
ELSA-2025-9430

ELSA-2025-9430: krb5 security update (MODERATE)

около 1 месяца назад
oracle-oval логотип
ELSA-2025-9418

ELSA-2025-9418: krb5 security update (MODERATE)

около 1 месяца назад
oracle-oval логотип
ELSA-2025-8411

ELSA-2025-8411: krb5 security update (MODERATE)

2 месяца назад

Уязвимостей на страницу