Vulnerability index

Browse CVEs

82 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 7.2 CVE-2007-3149 sudo, when linked with MIT Kerberos 5 (krb5), does not properly check whether a user can currently authenticate to Kerberos, which allows local users… Kerberos 5 Mitigation only Fix from $1,9502007-06-11 MEDIUM 5.0 CVE-2006-6144EPSS 5% The "mechglue" abstraction interface of the GSS-API library for Kerberos 5 1.5 through 1.5.1, as used in Kerberos administration daemon (kadmind) and… Kerberos 5 after 1.5.1 Fix from $1,6002006-12-31 HIGH 7.5 CVE-2005-1175EPSS 8% Heap-based buffer overflow in the Key Distribution Center (KDC) in MIT Kerberos 5 (krb5) 1.4.1 and earlier allows remote attackers to cause a denial … Kerberos 5 Patch available Fix from $1,9502005-07-18 MEDIUM 5.0 CVE-2005-1174EPSS 5% MIT Kerberos 5 (krb5) 1.3 through 1.4.1 Key Distribution Center (KDC) allows remote attackers to cause a denial of service (application crash) via a … Kerberos 5 Patch available Fix from $1,6002005-07-18 HIGH 7.2 CVE-2004-1189 The add_to_history function in svr_principal.c in libkadm5srv for MIT Kerberos 5 (krb5) up to 1.3.5, when performing a password change, does not prop… Kerberos 5 after 1.3.5 Fix from $1,9502004-12-31 MEDIUM 5.0 CVE-2004-0644EPSS 6% The asn1buf_skiptail function in the ASN.1 decoder library for MIT Kerberos 5 (krb5) 1.2.2 through 1.3.4 allows remote attackers to cause a denial of… Kerberos 5 Patch available Fix from $1,6002004-09-28 HIGH 10.0 CVE-2004-0523EPSS 12% Multiple buffer overflows in krb5_aname_to_localname for MIT Kerberos 5 (krb5) 1.3.3 and earlier allow remote attackers to execute arbitrary code as … Kerberos Patch available Fix from $1,9502004-08-18 MEDIUM 5.0 CVE-2002-1575 cgiemail allows remote attackers to use cgiemail as a spam proxy via CRLF injection of encoded newline (%0a) characters in parameters such as "requir… Cgiemail Patch available Fix from $1,6002004-03-03 MEDIUM 5.0 CVE-2003-0072 The Key Distribution Center (KDC) in Kerberos 5 (krb5) 1.2.7 and earlier allows remote, authenticated attackers to cause a denial of service (crash) … Kerberos Patch available Fix from $1,6002003-04-02 MEDIUM 5.0 CVE-2003-0082 The Key Distribution Center (KDC) in Kerberos 5 (krb5) 1.2.7 and earlier allows remote, authenticated attackers to cause a denial of service (crash) … Kerberos Patch available Fix from $1,6002003-04-02 HIGH 7.5 CVE-2003-0138 Version 4 of the Kerberos protocol (krb4), as used in Heimdal and other packages, allows an attacker to impersonate any principal in a realm via a ch… Kerberos Patch available Fix from $1,9502003-03-24 HIGH 7.5 CVE-2003-0139 Certain weaknesses in the implementation of version 4 of the Kerberos protocol (krb4) in the krb5 distribution, when triple-DES keys are used to key … Kerberos Patch available Fix from $1,9502003-03-24 HIGH 7.5 CVE-2003-0059 Unknown vulnerability in the chk_trans.c of the libkrb5 library for MIT Kerberos V5 before 1.2.5 allows users from one realm to impersonate users in … Kerberos 5 Patch available Fix from $1,9502003-02-19 HIGH 7.5 CVE-2003-0060EPSS 6% Format string vulnerabilities in the logging routines for MIT Kerberos V5 Key Distribution Center (KDC) before 1.2.5 allow remote attackers to cause … Kerberos 5 Patch available Fix from $1,9502003-02-19 MEDIUM 5.0 CVE-2002-0036 Integer signedness error in MIT Kerberos V5 ASN.1 decoder before krb5 1.2.5 allows remote attackers to cause a denial of service via a large unsigned… Kerberos 5 Patch available Fix from $1,6002003-02-19 MEDIUM 5.0 CVE-2003-0058 MIT Kerberos V5 Key Distribution Center (KDC) before 1.2.5 allows remote authenticated attackers to cause a denial of service (crash) on KDCs within … Kerberos 5 Patch available Fix from $1,6002003-02-19 HIGH 7.5 CVE-2002-1652EPSS 8% Buffer overflow in cgicso.c for cgiemail 1.6 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a l… Cgiemail Patch available Fix from $1,9502002-12-31 HIGH 7.5 CVE-2002-0900EPSS 6% Buffer overflow in pks PGP public key web server before 0.9.5 allows remote attackers to cause a denial of service (crash) and possibly execute arbit… Pgp Public Key Server Patch available Fix from $1,9502002-10-04 HIGH 7.5 CVE-2001-1323 Buffer overflow in MIT Kerberos 5 (krb5) 1.2.2 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code v… Kerberos 5 1.2.2+ Fix from $1,9502001-05-16 HIGH 10.0 CVE-2000-0514 GSSFTP FTP daemon in Kerberos 5 1.1.x does not properly restrict access to some FTP commands, which allows remote attackers to cause a denial of serv… Kerberos 5 Patch available Fix from $1,9502000-06-14 HIGH 7.5 CVE-1999-1321 Buffer overflow in ssh 1.2.26 client with Kerberos V enabled could allow remote attackers to cause a denial of service or execute arbitrary commands … Kerberos Mitigation only Fix from $1,9501998-11-05 HIGH 7.2 CVE-1999-1296 Buffer overflow in Kerberos IV compatibility libraries as used in Kerberos V allows local users to gain root privileges via a long line in a kerberos… Kerberos 5 Mitigation only Fix from $1,9501997-04-29