← Back

CVE-2017-11462

nvd nist
Published: Sep 13, 2017Modified: May 13, 2026

JSON object

Loading...
9.8
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 3.9 / Impact: 5.9
Source: NVD

Description

Double free vulnerability in MIT Kerberos 5 (aka krb5) allows attackers to have unspecified impact via vectors involving automatic deletion of security contexts on error.

Affected (15)

1 product
Kerberos 5
1 product
Fedora
Configuration A
13 vulnerable
Vulnerable SoftwareAffected Versions
Mit
Version 1.14.1
Version 1.14.2
Version 1.14.3
Version 1.14.4
Version 1.14.5
Version 1.14
Version 1.14 alpha1
Version 1.14 beta1
Version 1.14 beta2
Version 1.15.1
Version 1.15.1 beta1
Version 1.15.1 beta2
Version 1.15
Configuration B
2 vulnerable
Vulnerable SoftwareAffected Versions
Fedoraproject
Version 25
Version 26

References (8)

Source: cve@mitre.org
Vendor Advisory
Source: cve@mitre.org
Issue TrackingPatchThird Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Issue TrackingPatchThird Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
PatchThird Party Advisory

Timeline

No history available yet.