Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2704▼ 598 respecto a la semana anterior
Críticas / altas1288▼ 199 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)299▼ 211 respecto a la semana anterior
165 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (6.9) | 0.37% | — | MIT Kerberos 5 | 6/12/2007 | 16/6/2026 | Double free vulnerability in the gss_krb5int_make_seal_token_v3 function in lib/gssapi/krb5/k5sealv3.c in MIT Kerberos 5 (krb5) has unknown impact and attack vectors. | |
| Modificada | Alta (9.3) | 2.7% | — | MIT Kerberos 5 | 6/12/2007 | 16/6/2026 | The reply function in ftpd.c in the gssftp ftpd in MIT Kerberos 5 (krb5) does not initialize the length variable when auth_type has a certain value, which has unknown impact and remote authenticated attack vectors. NOTE: the original disclosure misidentifies the conditions under which the uninitialized variable is… | |
| Modificada | Alta (10) | 4.6% | — | MIT Kerberos 5 | 6/9/2007 | 16/6/2026 | The original patch for CVE-2007-3999 in svc_auth_gss.c in the RPCSEC_GSS RPC library in MIT Kerberos 5 (krb5) 1.4 through 1.6.2, as used by the Kerberos administration daemon (kadmind) and other applications that use krb5, does not correctly check the buffer length in some environments and architectures, which might… | |
| Modificada | Alta (8.5) | 6.1% | — | MIT Kerberos 5Fedoraproject Fedora | 5/9/2007 | 16/6/2026 | The kadm5_modify_policy_internal function in lib/kadm5/srv/svr_policy.c in the Kerberos administration daemon (kadmind) in MIT Kerberos 5 (krb5) 1.5 through 1.6.2 does not properly check return values when the policy does not exist, which might allow remote authenticated users with the "modify policy" privilege to… | |
| Modificada | Alta (10) | 11% | — | MIT Kerberos 5 | 5/9/2007 | 16/6/2026 | Stack-based buffer overflow in the svcauth_gss_validate function in lib/rpc/svc_auth_gss.c in the RPCSEC_GSS RPC library (librpcsecgss) in MIT Kerberos 5 (krb5) 1.4 through 1.6.2, as used by the Kerberos administration daemon (kadmind) and some third-party applications that use krb5, allows remote attackers to cause a… | |
| Modificada | Alta (7.5) | 1.5% | — | Kerberosdev Gallery IN A BOX | 8/8/2007 | 16/6/2026 | SQL injection vulnerability in admin_console/index.asp in Gallery In A Box allows remote attackers to execute arbitrary SQL commands via the (1) Username or (2) Password field. NOTE: these fields might be associated with the txtUsername and txtPassword parameters. | |
| Modificada | Alta (8.3) | 3.5% | — | MIT Kerberos 5Debian LinuxCanonical Ubuntu Linux | 26/6/2007 | 16/6/2026 | Integer signedness error in the gssrpc__svcauth_unix function in svc_auth_unix.c in the RPC library in MIT Kerberos 5 (krb5) 1.6.1 and earlier might allow remote attackers to execute arbitrary code via a negative length value. | |
| Modificada | Alta (9) | 7.5% | — | MIT Kerberos 5Canonical Ubuntu LinuxDebian Linux | 26/6/2007 | 16/6/2026 | Stack-based buffer overflow in the rename_principal_2_svc function in kadmind for MIT Kerberos 1.5.3, 1.6.1, and other versions allows remote authenticated users to execute arbitrary code via a crafted request to rename a principal. | |
| Modificada | Alta (10) | 11% | — | MIT Kerberos 5Debian LinuxCanonical Ubuntu Linux | 26/6/2007 | 16/6/2026 | The gssrpc__svcauth_gssapi function in the RPC library in MIT Kerberos 5 (krb5) 1.6.1 and earlier might allow remote attackers to execute arbitrary code via a zero-length RPC credential, which causes kadmind to free an uninitialized pointer during cleanup. | |
| Modificada | Alta (7.2) | 0.36% | — | MIT Kerberos 5Todd Miller Sudo | 11/6/2007 | 16/6/2026 | sudo, when linked with MIT Kerberos 5 (krb5), does not properly check whether a user can currently authenticate to Kerberos, which allows local users to gain privileges, in a manner unintended by the sudo security model, via certain KRB5_ environment variable settings. NOTE: another researcher disputes this… | |
| Modificada | Alta (10) | 30% | — | MIT Kerberos 5Debian LinuxCanonical Ubuntu Linux | 6/4/2007 | 16/6/2026 | The telnet daemon (telnetd) in MIT krb5 before 1.6.1 allows remote attackers to bypass authentication and gain system access via a username beginning with a '-' character, a similar issue to CVE-2007-0882. | |
| Modificada | Alta (9) | 10% | — | MIT Kerberos 5Debian LinuxCanonical Ubuntu Linux | 6/4/2007 | 16/6/2026 | Stack-based buffer overflow in the krb5_klog_syslog function in the kadm5 library, as used by the Kerberos administration daemon (kadmind) and Key Distribution Center (KDC), in MIT krb5 before 1.6.1 allows remote authenticated users to execute arbitrary code and modify the Kerberos key database via crafted arguments,… | |
| Modificada | Alta (9) | 9.9% | — | MIT Kerberos 5Canonical Ubuntu LinuxDebian Linux | 6/4/2007 | 16/6/2026 | Double free vulnerability in the GSS-API library (lib/gssapi/krb5/k5unseal.c), as used by the Kerberos administration daemon (kadmind) in MIT krb5 before 1.6.1, when used with the authentication method provided by the RPCSEC_GSS RPC library, allows remote authenticated users to execute arbitrary code and modify the… | |
| Modificada | Media (5) | 5.4% | — | MIT Kerberos 5 | 31/12/2006 | 16/6/2026 | The "mechglue" abstraction interface of the GSS-API library for Kerberos 5 1.5 through 1.5.1, as used in Kerberos administration daemon (kadmind) and other products that use this library, allows remote attackers to cause a denial of service (crash) via unspecified vectors that cause mechglue to free uninitialized… | |
| Modificada | Alta (9.3) | 7.9% | — | MIT Kerberos 5Canonical Ubuntu Linux | 31/12/2006 | 16/6/2026 | The RPC library in Kerberos 5 1.4 through 1.4.4, and 1.5 through 1.5.1, as used in Kerberos administration daemon (kadmind) and other products that use this library, calls an uninitialized function pointer in freed memory, which allows remote attackers to cause a denial of service (crash) and possibly execute… | |
| Modificada | Alta (7.2) | 0.50% | — | HeimdalMIT Kerberos 5 | 9/8/2006 | 16/6/2026 | The (1) ftpd and (2) ksu programs in (a) MIT Kerberos 5 (krb5) up to 1.5, and 1.4.x before 1.4.4, and (b) Heimdal 0.7.2 and earlier, do not check return codes for setuid calls, which might allow local users to gain privileges by causing setuid to fail to drop privileges. NOTE: as of 20060808, it is not known whether… | |
| Modificada | Alta (7.2) | 0.53% | — | HeimdalMIT Kerberos 5 | 9/8/2006 | 16/6/2026 | The (1) krshd and (2) v4rcp applications in (a) MIT Kerberos 5 (krb5) up to 1.5, and 1.4.x before 1.4.4, when running on Linux and AIX, and (b) Heimdal 0.7.2 and earlier, do not check return codes for setuid calls, which allows local users to gain privileges by causing setuid to fail to drop privileges using attacks… | |
| Modificada | Media (5) | 5.2% | — | MIT Kerberos 5 | 18/7/2005 | 16/6/2026 | MIT Kerberos 5 (krb5) 1.3 through 1.4.1 Key Distribution Center (KDC) allows remote attackers to cause a denial of service (application crash) via a certain valid TCP connection that causes a free of unallocated memory. | |
| Modificada | Alta (7.5) | 8.4% | — | MIT Kerberos 5 | 18/7/2005 | 16/6/2026 | Heap-based buffer overflow in the Key Distribution Center (KDC) in MIT Kerberos 5 (krb5) 1.4.1 and earlier allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a certain valid TCP or UDP request. | |
| Modificada | Crítica (9.8) | 11% | — | MIT Kerberos 5Apple MAC OS XApple MAC OS X ServerDebian Linux | 18/7/2005 | 16/6/2026 | Double free vulnerability in the krb5_recvauth function in MIT Kerberos 5 (krb5) 1.4.1 and earlier allows remote attackers to execute arbitrary code via certain error conditions. | |
| Modificada | Media (5) | 17% | — | Microsoft Telnet ClientMIT Kerberos 5Sunos | 14/6/2005 | 16/6/2026 | Certain BSD-based Telnet clients, including those used on Solaris and SuSE Linux, allow remote malicious Telnet servers to read sensitive environment variables via the NEW-ENVIRON option with a SEND ENV_USERVAR command. | |
| Modificada | Baja (2.1) | 0.33% | — | MIT Kerberos 5 | 9/2/2005 | 16/6/2026 | The krb5-send-pr script in the kerberos5 (krb5) package in Trustix Secure Linux 1.5 through 2.1, and possibly other operating systems, allows local users to overwrite files via a symlink attack on temporary files. | |
| Modificada | Alta (7.2) | 0.73% | — | MIT Kerberos 5 | 31/12/2004 | 16/6/2026 | The add_to_history function in svr_principal.c in libkadm5srv for MIT Kerberos 5 (krb5) up to 1.3.5, when performing a password change, does not properly track the password policy's history count and the maximum number of keys, which can cause an array index out-of-bounds error and may allow authenticated users to… | |
| Modificada | Crítica (9.8) | 7.0% | — | MIT Kerberos 5OpenpkgDebian Linux | 20/10/2004 | 16/6/2026 | Double free vulnerabilities in error handling code in krb524d for MIT Kerberos 5 (krb5) 1.2.8 and earlier may allow remote attackers to execute arbitrary code. | |
| Modificada | Alta (7.5) | 8.3% | — | MIT Kerberos 5Debian LinuxRedhat Enterprise Linux DesktopRedhat Enterprise Linux Server+1 | 28/9/2004 | 16/6/2026 | Double free vulnerabilities in the error handling code for ASN.1 decoders in the (1) Key Distribution Center (KDC) library and (2) client library for MIT Kerberos 5 (krb5) 1.3.4 and earlier may allow remote attackers to execute arbitrary code. |