Mit

Kerberos 5

142 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.33%
  • Veröffentlicht 09.02.2005 05:00:00
  • Zuletzt bearbeitet 16.06.2026 22:06:46

The krb5-send-pr script in the kerberos5 (krb5) package in Trustix Secure Linux 1.5 through 2.1, and possibly other operating systems, allows local users to overwrite files via a symlink attack on temporary files.

  • EPSS 0.73%
  • Veröffentlicht 31.12.2004 05:00:00
  • Zuletzt bearbeitet 16.06.2026 22:07:13

The add_to_history function in svr_principal.c in libkadm5srv for MIT Kerberos 5 (krb5) up to 1.3.5, when performing a password change, does not properly track the password policy's history count and the maximum number of keys, which can cause an arr...

  • EPSS 6.99%
  • Veröffentlicht 20.10.2004 04:00:00
  • Zuletzt bearbeitet 16.06.2026 22:06:20

Double free vulnerabilities in error handling code in krb524d for MIT Kerberos 5 (krb5) 1.2.8 and earlier may allow remote attackers to execute arbitrary code.

  • EPSS 8.26%
  • Veröffentlicht 28.09.2004 04:00:00
  • Zuletzt bearbeitet 16.06.2026 22:06:04

Double free vulnerabilities in the error handling code for ASN.1 decoders in the (1) Key Distribution Center (KDC) library and (2) client library for MIT Kerberos 5 (krb5) 1.3.4 and earlier may allow remote attackers to execute arbitrary code.

  • EPSS 8.93%
  • Veröffentlicht 28.09.2004 04:00:00
  • Zuletzt bearbeitet 16.06.2026 22:06:04

Double free vulnerability in the krb5_rd_cred function for MIT Kerberos 5 (krb5) 1.3.1 and earlier may allow local users to execute arbitrary code.

  • EPSS 5.59%
  • Veröffentlicht 28.09.2004 04:00:00
  • Zuletzt bearbeitet 16.06.2026 22:06:04

The asn1buf_skiptail function in the ASN.1 decoder library for MIT Kerberos 5 (krb5) 1.2.2 through 1.3.4 allows remote attackers to cause a denial of service (infinite loop) via a certain BER encoding.

  • EPSS 11.67%
  • Veröffentlicht 18.08.2004 04:00:00
  • Zuletzt bearbeitet 16.06.2026 22:05:48

Multiple buffer overflows in krb5_aname_to_localname for MIT Kerberos 5 (krb5) 1.3.3 and earlier allow remote attackers to execute arbitrary code as root.

  • EPSS 1.95%
  • Veröffentlicht 02.04.2003 05:00:00
  • Zuletzt bearbeitet 16.06.2026 22:01:27

The Key Distribution Center (KDC) in Kerberos 5 (krb5) 1.2.7 and earlier allows remote, authenticated attackers to cause a denial of service (crash) on KDCs within the same realm using a certain protocol request that causes an out-of-bounds read of a...

  • EPSS 2.69%
  • Veröffentlicht 02.04.2003 05:00:00
  • Zuletzt bearbeitet 16.06.2026 22:01:29

The Key Distribution Center (KDC) in Kerberos 5 (krb5) 1.2.7 and earlier allows remote, authenticated attackers to cause a denial of service (crash) on KDCs within the same realm using a certain protocol request that causes the KDC to corrupt its hea...

Exploit
  • EPSS 15.03%
  • Veröffentlicht 25.03.2003 05:00:00
  • Zuletzt bearbeitet 16.06.2026 22:01:22

Integer overflow in the xdrmem_getbytes() function, and possibly other functions, of XDR (external data representation) libraries derived from SunRPC, including libnsl, libc, glibc, and dietlibc, allows remote attackers to execute arbitrary code via ...