Vulnerability index

Browse CVEs

24 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Kerberos 5 HIGH 7.5
CVE-2024-26461

Kerberos 5 (aka krb5) 1.21.2 contains a memory leak vulnerability in /krb5/src/lib/gssapi/krb5/k5sealv3.c.

No fix yet
Fix from $1,950 2024-02-29
Kerberos 5 MEDIUM 5.5
CVE-2024-26462

Kerberos 5 (aka krb5) 1.21.2 contains a memory leak vulnerability in /krb5/src/kdc/ndr.c.

No fix yet
Fix from $1,600 2024-02-29
Kerberos 5 MEDIUM 5.3
CVE-2024-26458

Kerberos 5 (aka krb5) 1.21.2 contains a memory leak in /krb5/src/lib/rpc/pmap_rmt.c.

No fix yet
Fix from $1,600 2024-02-29
Universal Turing Machine HIGH 7.8
CVE-2021-32471

Insufficient input validation in the Marvin Minsky 1967 implementation of the Universal Turing Machine allows program users to execute arbitrary code…

No fix yet
Fix from $1,950 2021-05-10
Kerberos 5 MEDIUM 5.5
CVE-2012-1012

server/server_stubs.c in the kadmin protocol implementation in MIT Kerberos 5 (aka krb5) 1.10 before 1.10.1 does not properly restrict access to (1) …

Mitigation only
Fix from $1,600 2012-06-07
Kerberos 5 HIGH 7.8
CVE-2011-4151

The krb5_db2_lockout_audit function in the Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) 1.8 through 1.8.4, when the db2 (aka Berkeley D…

Mitigation only
Fix from $1,950 2011-10-20
Kerberos 5 HIGH 7.8
CVE-2011-1527

The kdb_ldap plugin in the Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) 1.9 through 1.9.1, when the LDAP back end is used, allows remot…

Mitigation only
Fix from $1,950 2011-10-20
Kerberos 5 HIGH 7.8
CVE-2011-1528

The krb5_ldap_lockout_audit function in the Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) 1.8 through 1.8.4 and 1.9 through 1.9.1, when …

Mitigation only
Fix from $1,950 2011-10-20
Kerberos 5 HIGH 7.8
CVE-2011-1529

The lookup_lockout_policy function in the Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) 1.8 through 1.8.4 and 1.9 through 1.9.1, when th…

Mitigation only
Fix from $1,950 2011-10-20
Kerberos MEDIUM 5.0
CVE-2011-0281

The unparse implementation in the Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) 1.6.x through 1.9, when an LDAP backend is used, allows …

Mitigation only
Fix from $1,600 2011-02-10
Kerberos MEDIUM 5.0
CVE-2011-0282

The Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) 1.6.x through 1.9, when an LDAP backend is used, allows remote attackers to cause a de…

Mitigation only
Fix from $1,600 2011-02-10
Kerberos 5 MEDIUM 5.0
CVE-2011-0283

The Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) 1.9 allows remote attackers to cause a denial of service (NULL pointer dereference and…

Mitigation only
Fix from $1,600 2011-02-10
Kerberos HIGH 7.8
CVE-2010-0283

The Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) 1.7 before 1.7.2, and 1.8 alpha, allows remote attackers to cause a denial of service …

Mitigation only
Fix from $1,950 2010-02-22
Kerberos MEDIUM 5.8
CVE-2009-0844

The get_input_token function in the SPNEGO implementation in MIT Kerberos 5 (aka krb5) 1.5 through 1.6.3 allows remote attackers to cause a denial of…

Mitigation only
Fix from $1,600 2009-04-09
Kerberos MEDIUM 5.0
CVE-2009-0845EPSS 6%

The spnego_gss_accept_sec_context function in lib/gssapi/spnego/spnego_mech.c in MIT Kerberos 5 (aka krb5) 1.5 through 1.6.3, when SPNEGO is used, al…

No fix yet
Fix from $1,600 2009-03-27
Kerberos 5 HIGH 10.0
CVE-2008-0947EPSS 9%

Buffer overflow in the RPC library used by libgssrpc and kadmind in MIT Kerberos 5 (krb5) 1.4 through 1.6.3 allows remote attackers to execute arbitr…

Mitigation only
Fix from $1,950 2008-03-19
Kerberos 5 HIGH 9.3
CVE-2008-0948EPSS 7%

Buffer overflow in the RPC library (lib/rpc/rpc_dtablesize.c) used by libgssrpc and kadmind in MIT Kerberos 5 (krb5) 1.2.2, and probably other versio…

Mitigation only
Fix from $1,950 2008-03-19
Kerberos 5 HIGH 10.0
CVE-2007-5902EPSS 6%

Integer overflow in the svcauth_gss_get_principal function in lib/rpc/svc_auth_gss.c in MIT Kerberos 5 (krb5) allows remote attackers to have an unkn…

No fix yet
Fix from $1,950 2007-12-06
Kerberos 5 HIGH 9.3
CVE-2007-5894

The reply function in ftpd.c in the gssftp ftpd in MIT Kerberos 5 (krb5) does not initialize the length variable when auth_type has a certain value, …

Mitigation only
Fix from $1,950 2007-12-06
Kerberos 5 HIGH 9.0
CVE-2007-5972

Double free vulnerability in the krb5_def_store_mkey function in lib/kdb/kdb_default.c in MIT Kerberos 5 (krb5) 1.5 has unknown impact and remote aut…

Mitigation only
Fix from $1,950 2007-12-06
Kerberos 5 HIGH 10.0
CVE-2007-3999EPSS 11%

Stack-based buffer overflow in the svcauth_gss_validate function in lib/rpc/svc_auth_gss.c in the RPCSEC_GSS RPC library (librpcsecgss) in MIT Kerber…

Mitigation only
Fix from $1,950 2007-09-05
Kerberos 5 HIGH 7.2
CVE-2007-3149

sudo, when linked with MIT Kerberos 5 (krb5), does not properly check whether a user can currently authenticate to Kerberos, which allows local users…

Mitigation only
Fix from $1,950 2007-06-11
Kerberos HIGH 7.5
CVE-1999-1321

Buffer overflow in ssh 1.2.26 client with Kerberos V enabled could allow remote attackers to cause a denial of service or execute arbitrary commands …

Mitigation only
Fix from $1,950 1998-11-05
Kerberos 5 HIGH 7.2
CVE-1999-1296

Buffer overflow in Kerberos IV compatibility libraries as used in Kerberos V allows local users to gain root privileges via a long line in a kerberos…

Mitigation only
Fix from $1,950 1997-04-29