Mit

Kerberos 5

142 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 4.18%
  • Veröffentlicht 20.10.2011 21:55:00
  • Zuletzt bearbeitet 16.06.2026 23:29:33

The krb5_ldap_lockout_audit function in the Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) 1.8 through 1.8.4 and 1.9 through 1.9.1, when the LDAP back end is used, allows remote attackers to cause a denial of service (assertion failure an...

  • EPSS 4.05%
  • Veröffentlicht 20.10.2011 21:55:00
  • Zuletzt bearbeitet 16.06.2026 23:29:33

The lookup_lockout_policy function in the Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) 1.8 through 1.8.4 and 1.9 through 1.9.1, when the db2 (aka Berkeley DB) or LDAP back end is used, allows remote attackers to cause a denial of servic...

  • EPSS 20.77%
  • Veröffentlicht 15.04.2011 00:55:00
  • Zuletzt bearbeitet 16.06.2026 23:27:09

The process_chpw_request function in schpw.c in the password-changing functionality in kadmind in MIT Kerberos 5 (aka krb5) 1.7 through 1.9 frees an invalid pointer, which allows remote attackers to execute arbitrary code or cause a denial of service...

  • EPSS 8.27%
  • Veröffentlicht 20.03.2011 02:00:03
  • Zuletzt bearbeitet 16.06.2026 23:27:09

Double free vulnerability in the prepare_error_as function in do_as_req.c in the Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) 1.7 through 1.9, when the PKINIT feature is enabled, allows remote attackers to cause a denial of service (dae...

  • EPSS 4.2%
  • Veröffentlicht 10.02.2011 18:00:55
  • Zuletzt bearbeitet 16.06.2026 23:27:08

The unparse implementation in the Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) 1.6.x through 1.9, when an LDAP backend is used, allows remote attackers to cause a denial of service (file descriptor exhaustion and daemon hang) via a prin...

  • EPSS 3.48%
  • Veröffentlicht 10.02.2011 18:00:55
  • Zuletzt bearbeitet 16.06.2026 23:27:08

The Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) 1.6.x through 1.9, when an LDAP backend is used, allows remote attackers to cause a denial of service (NULL pointer dereference or buffer over-read, and daemon crash) via a crafted princi...

  • EPSS 2.62%
  • Veröffentlicht 10.02.2011 18:00:55
  • Zuletzt bearbeitet 16.06.2026 23:27:09

The Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) 1.9 allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via a malformed request packet that does not trigger a response packet.

  • EPSS 3.65%
  • Veröffentlicht 10.02.2011 18:00:18
  • Zuletzt bearbeitet 16.06.2026 23:24:00

The do_standalone function in the MIT krb5 KDC database propagation daemon (kpropd) in Kerberos 1.7, 1.8, and 1.9, when running in standalone mode, does not properly handle when a worker child process "exits abnormally," which allows remote attackers...

  • EPSS 1.92%
  • Veröffentlicht 02.12.2010 16:22:21
  • Zuletzt bearbeitet 16.06.2026 23:23:59

MIT Kerberos 5 (aka krb5) 1.8.x through 1.8.3 does not reject RC4 key-derivation checksums, which might allow remote authenticated users to forge a (1) AD-SIGNEDPATH or (2) AD-KDC-ISSUED signature, and possibly gain privileges, by leveraging the smal...

  • EPSS 2.09%
  • Veröffentlicht 02.12.2010 16:22:21
  • Zuletzt bearbeitet 16.06.2026 23:23:59

The Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) 1.7 does not properly restrict the use of TGT credentials for armoring TGS requests, which might allow remote authenticated users to impersonate a client by rewriting an inner request, ak...