← Back

Kerberos

kerberos

Vendor: Mit • 33 CVEs

CVEs (33)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
9Debian
FreebsdIbm+6 more
11Aix
Debian LinuxFreebsd+8 more
Apr 16, 2026
Aug 14, 2001
N/A· v4
N/A· v3
10.0 HIGH· v2
Buffer overflow in BSD-based telnetd telnet daemon on various operating systems allows remote attackers to execute arbitrary commands via a set of options including AYT (Are You There), which is not properly handled by t...Show more
Buffer overflow in BSD-based telnetd telnet daemon on various operating systems allows remote attackers to execute arbitrary commands via a set of options including AYT (Are You There), which is not properly handled by the telrcv function.Show less
1Mit
2Kerberos
Kerberos 5
Apr 16, 2026
Jun 27, 2001
N/A· v4
N/A· v3
2.1 LOW· v2
Kerberos 4 (aka krb4) allows local users to overwrite arbitrary files via a symlink attack on new ticket files.
2Cygnus
Mit
4Cygnus Network Security
KerberosKerberos 5+1 more
Apr 16, 2026
Jun 9, 2000
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Kerberos 4 KDC program improperly frees memory twice (aka "double-free"), which allows remote attackers to cause a denial of service.
2Cygnus
Mit
4Cygnus Network Security
KerberosKerberos 5+1 more
Apr 16, 2026
Jun 9, 2000
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Kerberos 4 KDC program does not properly check for null termination of AUTH_MSG_KDC_REQUEST requests, which allows remote attackers to cause a denial of service via a malformed request.
3Cygnus Network Security Project
Kerbnet ProjectMit
4Cygnus Network Security
KerberosKerberos 5+1 more
Apr 16, 2026
Jun 9, 2000
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Buffer overflow in Kerberos 4 KDC program allows remote attackers to cause a denial of service via the e_msg variable in the kerb_err_reply function.
3Cygnus Network Security Project
Kerbnet ProjectMit
4Cygnus Network Security
KerberosKerberos 5+1 more
Apr 16, 2026
Jun 9, 2000
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Buffer overflow in Kerberos 4 KDC program allows remote attackers to cause a denial of service via the localrealm variable in the process_v4 function.
3Cygnus Network Security Project
Kerbnet ProjectMit
4Cygnus Network Security
KerberosKerberos 5+1 more
Apr 16, 2026
Jun 9, 2000
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Buffer overflow in Kerberos 4 KDC program allows remote attackers to cause a denial of service via the lastrealm variable in the set_tgtkey function.
3Cygnus
MitRedhat
5Cygnus Network Security
KerberosKerberos 5+2 more
Apr 16, 2026
May 16, 2000
N/A· v4
N/A· v3
7.2 HIGH· v2
Buffer overflow in ksu in Kerberos 5 allows local users to gain root privileges.
3Cygnus
MitRedhat
5Cygnus Network Security
KerberosKerberos 5+2 more
Apr 16, 2026
May 16, 2000
N/A· v4
N/A· v3
10.0 HIGH· v2
Buffer overflow in krshd in Kerberos 5 allows remote attackers to gain root privileges.
3Cygnus
MitRedhat
5Cygnus Network Security
KerberosKerberos 5+2 more
Apr 16, 2026
May 16, 2000
N/A· v4
N/A· v3
10.0 HIGH· v2
Buffer overflow in krb425_conv_principal function in Kerberos 5 allows remote attackers to gain root privileges.
3Cygnus
MitRedhat
5Cygnus Network Security
KerberosKerberos 5+2 more
Apr 16, 2026
May 16, 2000
N/A· v4
N/A· v3
10.0 HIGH· v2
Buffer overflow in krb_rd_req function in Kerberos 4 and 5 allows remote attackers to gain root privileges.
1Mit
1Kerberos
Apr 16, 2026
Nov 5, 1998
N/A· v4
N/A· v3
7.5 HIGH· v2
Buffer overflow in ssh 1.2.26 client with Kerberos V enabled could allow remote attackers to cause a denial of service or execute arbitrary commands via a long DNS hostname that is not properly handled during TGT ticket...Show more
Buffer overflow in ssh 1.2.26 client with Kerberos V enabled could allow remote attackers to cause a denial of service or execute arbitrary commands via a long DNS hostname that is not properly handled during TGT ticket passing.Show less
3Mit
Process SoftwareSun
4Kerberos
Kerberos 5Multinet+1 more
Apr 16, 2026
Feb 21, 1996
N/A· v4
N/A· v3
4.6 MEDIUM· v2
Kerberos 4 key servers allow a user to masquerade as another by breaking and generating session keys.