CVEs (139)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
Integer signedness error in MIT Kerberos V5 ASN.1 decoder before krb5 1.2.5 allows remote attackers to cause a denial of service via a large unsigned data element length, which is later used as a negative value. |
3Debian KthMit4Debian Linux Kerberos 5Kth Kerberos 4+1 moreApr 16, 2026 Nov 4, 2002 N/A· v4 N/A· v3 10.0 HIGH· v2 The kadm_ser_in function in (1) the Kerberos v4compatibility administration daemon (kadmind4) in the MIT Kerberos 5 (krb5) krb5-1.2.6 and earlier, (2) kadmind in KTH Kerberos 4 (eBones) before 1.2.1, and (3) kadmind in K...Show more |
9Debian FreebsdIbm+6 more11Aix Debian LinuxFreebsd+8 moreApr 16, 2026 Aug 14, 2001 N/A· v4 N/A· v3 10.0 HIGH· v2 Buffer overflow in BSD-based telnetd telnet daemon on various operating systems allows remote attackers to execute arbitrary commands via a set of options including AYT (Are You There), which is not properly handled by t...Show more |
Kerberos 4 (aka krb4) allows local users to overwrite arbitrary files via a symlink attack on new ticket files. |
5Freebsd MitNetbsd+2 more5Freebsd IrixKerberos 5+2 moreApr 16, 2026 Jun 18, 2001 N/A· v4 N/A· v3 10.0 HIGH· v2 Buffer overflows in BSD-based FTP servers allows remote attackers to execute arbitrary commands via a long pattern string containing a {} sequence, as seen in (1) g_opendir, (2) g_lstat, (3) g_stat, and (4) the glob0 buf...Show more |
Buffer overflow in MIT Kerberos 5 (krb5) 1.2.2 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code via base-64 encoded data, which is not properly handled when the radix_e...Show more |
GSSFTP FTP daemon in Kerberos 5 1.1.x does not properly restrict access to some FTP commands, which allows remote attackers to cause a denial of service, and local users to gain root privileges. |
2Cygnus Mit4Cygnus Network Security KerberosKerberos 5+1 moreApr 16, 2026 Jun 9, 2000 N/A· v4 N/A· v3 5.0 MEDIUM· v2 Kerberos 4 KDC program improperly frees memory twice (aka "double-free"), which allows remote attackers to cause a denial of service. |
2Cygnus Mit4Cygnus Network Security KerberosKerberos 5+1 moreApr 16, 2026 Jun 9, 2000 N/A· v4 N/A· v3 5.0 MEDIUM· v2 Kerberos 4 KDC program does not properly check for null termination of AUTH_MSG_KDC_REQUEST requests, which allows remote attackers to cause a denial of service via a malformed request. |
3Cygnus Network Security Project Kerbnet ProjectMit4Cygnus Network Security KerberosKerberos 5+1 moreApr 16, 2026 Jun 9, 2000 N/A· v4 N/A· v3 5.0 MEDIUM· v2 Buffer overflow in Kerberos 4 KDC program allows remote attackers to cause a denial of service via the e_msg variable in the kerb_err_reply function. |
3Cygnus Network Security Project Kerbnet ProjectMit4Cygnus Network Security KerberosKerberos 5+1 moreApr 16, 2026 Jun 9, 2000 N/A· v4 N/A· v3 5.0 MEDIUM· v2 Buffer overflow in Kerberos 4 KDC program allows remote attackers to cause a denial of service via the localrealm variable in the process_v4 function. |
3Cygnus Network Security Project Kerbnet ProjectMit4Cygnus Network Security KerberosKerberos 5+1 moreApr 16, 2026 Jun 9, 2000 N/A· v4 N/A· v3 5.0 MEDIUM· v2 Buffer overflow in Kerberos 4 KDC program allows remote attackers to cause a denial of service via the lastrealm variable in the set_tgtkey function. |
3Cygnus MitRedhat5Cygnus Network Security KerberosKerberos 5+2 moreApr 16, 2026 May 16, 2000 N/A· v4 N/A· v3 7.2 HIGH· v2 Buffer overflow in ksu in Kerberos 5 allows local users to gain root privileges. |
3Cygnus MitRedhat5Cygnus Network Security KerberosKerberos 5+2 moreApr 16, 2026 May 16, 2000 N/A· v4 N/A· v3 10.0 HIGH· v2 Buffer overflow in krshd in Kerberos 5 allows remote attackers to gain root privileges. |
3Cygnus MitRedhat5Cygnus Network Security KerberosKerberos 5+2 moreApr 16, 2026 May 16, 2000 N/A· v4 N/A· v3 10.0 HIGH· v2 Buffer overflow in krb425_conv_principal function in Kerberos 5 allows remote attackers to gain root privileges. |
3Cygnus MitRedhat5Cygnus Network Security KerberosKerberos 5+2 moreApr 16, 2026 May 16, 2000 N/A· v4 N/A· v3 10.0 HIGH· v2 Buffer overflow in krb_rd_req function in Kerberos 4 and 5 allows remote attackers to gain root privileges. |
4Cde DigitalMit+1 more4Afs CdeKerberos 5+1 moreApr 16, 2026 Jun 11, 1999 N/A· v4 N/A· v3 7.2 HIGH· v2 The dtlogin program in Compaq Tru64 UNIX allows local users to gain root privileges. |
Buffer overflow in Kerberos IV compatibility libraries as used in Kerberos V allows local users to gain root privileges via a long line in a kerberos configuration file, which can be specified via the KRB_CONF environmen...Show more |
3Mit Process SoftwareSun4Kerberos Kerberos 5Multinet+1 moreApr 16, 2026 Feb 21, 1996 N/A· v4 N/A· v3 4.6 MEDIUM· v2 Kerberos 4 key servers allow a user to masquerade as another by breaking and generating session keys. |