CVE-2014-4344
- EPSS 5.27%
- Veröffentlicht 14.08.2014 05:01:49
- Zuletzt bearbeitet 06.05.2026 22:30:45
The acc_ctx_cont function in the SPNEGO acceptor in lib/gssapi/spnego/spnego_mech.c in MIT Kerberos 5 (aka krb5) 1.5.x through 1.12.x before 1.12.2 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) ...
- EPSS 8.14%
- Veröffentlicht 20.07.2014 11:12:50
- Zuletzt bearbeitet 06.05.2026 22:30:45
MIT Kerberos 5 (aka krb5) 1.7.x through 1.12.x before 1.12.2 allows remote attackers to cause a denial of service (buffer over-read or NULL pointer dereference, and application crash) by injecting invalid tokens into a GSSAPI application session.
CVE-2012-6137
- EPSS 0.19%
- Veröffentlicht 21.05.2013 18:55:01
- Zuletzt bearbeitet 29.04.2026 01:13:23
rhn-migrate-classic-to-rhsm tool in Red Hat subscription-manager does not verify the Red Hat Network Classic server's X.509 certificate when migrating to a Certificate-based Red Hat Network, which allows remote man-in-the-middle attackers to obtain s...
CVE-2012-5689
- EPSS 3.81%
- Veröffentlicht 25.01.2013 12:00:46
- Zuletzt bearbeitet 29.04.2026 01:13:23
ISC BIND 9.8.x through 9.8.4-P1 and 9.9.x through 9.9.2-P1, in certain configurations involving DNS64 with a Response Policy Zone that lacks an AAAA rewrite rule, allows remote attackers to cause a denial of service (assertion failure and named daemo...
CVE-2012-0867
- EPSS 1.87%
- Veröffentlicht 18.07.2012 23:55:01
- Zuletzt bearbeitet 29.04.2026 01:13:23
PostgreSQL 8.4.x before 8.4.11, 9.0.x before 9.0.7, and 9.1.x before 9.1.3 truncates the common name to only 32 characters when verifying SSL certificates, which allows remote attackers to spoof connections when the host name is exactly 32 characters...
CVE-2012-1703
- EPSS 0.8%
- Veröffentlicht 03.05.2012 22:55:02
- Zuletzt bearbeitet 29.04.2026 01:13:23
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.61 and earlier, and 5.5.21 and earlier, allows remote authenticated users to affect availability via unknown vectors related to Server Optimizer, a different vulnerability th...