CVE-2006-3084
- EPSS 0.18%
- Published 09.08.2006 10:04:00
- Last modified 03.04.2025 01:03:51
The (1) ftpd and (2) ksu programs in (a) MIT Kerberos 5 (krb5) up to 1.5, and 1.4.x before 1.4.4, and (b) Heimdal 0.7.2 and earlier, do not check return codes for setuid calls, which might allow local users to gain privileges by causing setuid to fai...
- EPSS 40.93%
- Published 18.07.2005 04:00:00
- Last modified 03.04.2025 01:03:51
MIT Kerberos 5 (krb5) 1.3 through 1.4.1 Key Distribution Center (KDC) allows remote attackers to cause a denial of service (application crash) via a certain valid TCP connection that causes a free of unallocated memory.
CVE-2005-1175
- EPSS 45.4%
- Published 18.07.2005 04:00:00
- Last modified 03.04.2025 01:03:51
Heap-based buffer overflow in the Key Distribution Center (KDC) in MIT Kerberos 5 (krb5) 1.4.1 and earlier allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a certain valid TCP or UDP req...
CVE-2005-1689
- EPSS 55.2%
- Published 18.07.2005 04:00:00
- Last modified 03.04.2025 01:03:51
Double free vulnerability in the krb5_recvauth function in MIT Kerberos 5 (krb5) 1.4.1 and earlier allows remote attackers to execute arbitrary code via certain error conditions.
- EPSS 10.25%
- Published 14.06.2005 04:00:00
- Last modified 03.04.2025 01:03:51
Certain BSD-based Telnet clients, including those used on Solaris and SuSE Linux, allow remote malicious Telnet servers to read sensitive environment variables via the NEW-ENVIRON option with a SEND ENV_USERVAR command.
CVE-2004-0971
- EPSS 0.11%
- Published 09.02.2005 05:00:00
- Last modified 03.04.2025 01:03:51
The krb5-send-pr script in the kerberos5 (krb5) package in Trustix Secure Linux 1.5 through 2.1, and possibly other operating systems, allows local users to overwrite files via a symlink attack on temporary files.
CVE-2004-1189
- EPSS 0.09%
- Published 31.12.2004 05:00:00
- Last modified 03.04.2025 01:03:51
The add_to_history function in svr_principal.c in libkadm5srv for MIT Kerberos 5 (krb5) up to 1.3.5, when performing a password change, does not properly track the password policy's history count and the maximum number of keys, which can cause an arr...
CVE-2004-0772
- EPSS 21.77%
- Published 20.10.2004 04:00:00
- Last modified 03.04.2025 01:03:51
Double free vulnerabilities in error handling code in krb524d for MIT Kerberos 5 (krb5) 1.2.8 and earlier may allow remote attackers to execute arbitrary code.
CVE-2004-0642
- EPSS 25.8%
- Published 28.09.2004 04:00:00
- Last modified 03.04.2025 01:03:51
Double free vulnerabilities in the error handling code for ASN.1 decoders in the (1) Key Distribution Center (KDC) library and (2) client library for MIT Kerberos 5 (krb5) 1.3.4 and earlier may allow remote attackers to execute arbitrary code.
CVE-2004-0643
- EPSS 0.13%
- Published 28.09.2004 04:00:00
- Last modified 03.04.2025 01:03:51
Double free vulnerability in the krb5_rd_cred function for MIT Kerberos 5 (krb5) 1.3.1 and earlier may allow local users to execute arbitrary code.