Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 5

Количество 5

ubuntu логотип

CVE-2026-91926

3 дня назад

(A flaw was found in gss-ntlmssp. A memory leak occurs in the NTLM targ ...)

CVSS3: 3.7
EPSS: Низкий
redhat логотип

CVE-2026-91926

4 дня назад

A flaw was found in gss-ntlmssp. A memory leak occurs in the NTLM target-info parser when a crafted NTLM CHALLENGE message contains duplicated string-valued AV_PAIR entries. The parser allocates memory for each string value but does not free the previous allocation when the same AV_PAIR type appears more than once, leaking the earlier allocation. A malicious or man-in-the-middle server can exploit this to cause gradual memory exhaustion on the client during NTLM authentication, leading to a denial of service.

CVSS3: 3.7
EPSS: Низкий
nvd логотип

CVE-2026-91926

4 дня назад

A flaw was found in gss-ntlmssp. A memory leak occurs in the NTLM target-info parser when a crafted NTLM CHALLENGE message contains duplicated string-valued AV_PAIR entries. The parser allocates memory for each string value but does not free the previous allocation when the same AV_PAIR type appears more than once, leaking the earlier allocation. A malicious or man-in-the-middle server can exploit this to cause gradual memory exhaustion on the client during NTLM authentication, leading to a denial of service.

CVSS3: 3.7
EPSS: Низкий
debian логотип

CVE-2026-91926

4 дня назад

A flaw was found in gss-ntlmssp. A memory leak occurs in the NTLM targ ...

CVSS3: 3.7
EPSS: Низкий
github логотип

GHSA-x7fj-4fx4-9f96

4 дня назад

A flaw was found in gss-ntlmssp. A memory leak occurs in the NTLM target-info parser when a crafted NTLM CHALLENGE message contains duplicated string-valued AV_PAIR entries. The parser allocates memory for each string value but does not free the previous allocation when the same AV_PAIR type appears more than once, leaking the earlier allocation. A malicious or man-in-the-middle server can exploit this to cause gradual memory exhaustion on the client during NTLM authentication, leading to a denial of service.

CVSS3: 3.7
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2026-91926

(A flaw was found in gss-ntlmssp. A memory leak occurs in the NTLM targ ...)

CVSS3: 3.7
0%
Низкий
3 дня назад
redhat логотип
CVE-2026-91926

A flaw was found in gss-ntlmssp. A memory leak occurs in the NTLM target-info parser when a crafted NTLM CHALLENGE message contains duplicated string-valued AV_PAIR entries. The parser allocates memory for each string value but does not free the previous allocation when the same AV_PAIR type appears more than once, leaking the earlier allocation. A malicious or man-in-the-middle server can exploit this to cause gradual memory exhaustion on the client during NTLM authentication, leading to a denial of service.

CVSS3: 3.7
0%
Низкий
4 дня назад
nvd логотип
CVE-2026-91926

A flaw was found in gss-ntlmssp. A memory leak occurs in the NTLM target-info parser when a crafted NTLM CHALLENGE message contains duplicated string-valued AV_PAIR entries. The parser allocates memory for each string value but does not free the previous allocation when the same AV_PAIR type appears more than once, leaking the earlier allocation. A malicious or man-in-the-middle server can exploit this to cause gradual memory exhaustion on the client during NTLM authentication, leading to a denial of service.

CVSS3: 3.7
0%
Низкий
4 дня назад
debian логотип
CVE-2026-91926

A flaw was found in gss-ntlmssp. A memory leak occurs in the NTLM targ ...

CVSS3: 3.7
0%
Низкий
4 дня назад
github логотип
GHSA-x7fj-4fx4-9f96

A flaw was found in gss-ntlmssp. A memory leak occurs in the NTLM target-info parser when a crafted NTLM CHALLENGE message contains duplicated string-valued AV_PAIR entries. The parser allocates memory for each string value but does not free the previous allocation when the same AV_PAIR type appears more than once, leaking the earlier allocation. A malicious or man-in-the-middle server can exploit this to cause gradual memory exhaustion on the client during NTLM authentication, leading to a denial of service.

CVSS3: 3.7
0%
Низкий
4 дня назад

Уязвимостей на страницу