Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2768▼ 428 respecto a la semana anterior
Críticas / altas1324▼ 116 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)265▼ 243 respecto a la semana anterior
–

140 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaMedia (5)5.4%—MIT Kerberos 531/12/200616/6/2026
The "mechglue" abstraction interface of the GSS-API library for Kerberos 5 1.5 through 1.5.1, as used in Kerberos administration daemon (kadmind) and other products that use this library, allows remote attackers to cause a denial of service (crash) via unspecified vectors that cause mechglue to free uninitialized…
ModificadaAlta (9.3)7.9%—MIT Kerberos 5Canonical Ubuntu Linux31/12/200616/6/2026
The RPC library in Kerberos 5 1.4 through 1.4.4, and 1.5 through 1.5.1, as used in Kerberos administration daemon (kadmind) and other products that use this library, calls an uninitialized function pointer in freed memory, which allows remote attackers to cause a denial of service (crash) and possibly execute…
ModificadaAlta (7.2)0.53%—HeimdalMIT Kerberos 59/8/200616/6/2026
The (1) krshd and (2) v4rcp applications in (a) MIT Kerberos 5 (krb5) up to 1.5, and 1.4.x before 1.4.4, when running on Linux and AIX, and (b) Heimdal 0.7.2 and earlier, do not check return codes for setuid calls, which allows local users to gain privileges by causing setuid to fail to drop privileges using attacks…
ModificadaAlta (7.2)0.50%—HeimdalMIT Kerberos 59/8/200616/6/2026
The (1) ftpd and (2) ksu programs in (a) MIT Kerberos 5 (krb5) up to 1.5, and 1.4.x before 1.4.4, and (b) Heimdal 0.7.2 and earlier, do not check return codes for setuid calls, which might allow local users to gain privileges by causing setuid to fail to drop privileges. NOTE: as of 20060808, it is not known whether…
ModificadaAlta (7.5)8.4%—MIT Kerberos 518/7/200516/6/2026
Heap-based buffer overflow in the Key Distribution Center (KDC) in MIT Kerberos 5 (krb5) 1.4.1 and earlier allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a certain valid TCP or UDP request.
ModificadaCrítica (9.8)11%—MIT Kerberos 5Apple MAC OS XApple MAC OS X ServerDebian Linux18/7/200516/6/2026
Double free vulnerability in the krb5_recvauth function in MIT Kerberos 5 (krb5) 1.4.1 and earlier allows remote attackers to execute arbitrary code via certain error conditions.
ModificadaMedia (5)5.2%—MIT Kerberos 518/7/200516/6/2026
MIT Kerberos 5 (krb5) 1.3 through 1.4.1 Key Distribution Center (KDC) allows remote attackers to cause a denial of service (application crash) via a certain valid TCP connection that causes a free of unallocated memory.
ModificadaMedia (5)17%—Microsoft Telnet ClientMIT Kerberos 5Sunos14/6/200516/6/2026
Certain BSD-based Telnet clients, including those used on Solaris and SuSE Linux, allow remote malicious Telnet servers to read sensitive environment variables via the NEW-ENVIRON option with a SEND ENV_USERVAR command.
ModificadaBaja (2.1)0.33%—MIT Kerberos 59/2/200516/6/2026
The krb5-send-pr script in the kerberos5 (krb5) package in Trustix Secure Linux 1.5 through 2.1, and possibly other operating systems, allows local users to overwrite files via a symlink attack on temporary files.
ModificadaAlta (7.2)0.73%—MIT Kerberos 531/12/200416/6/2026
The add_to_history function in svr_principal.c in libkadm5srv for MIT Kerberos 5 (krb5) up to 1.3.5, when performing a password change, does not properly track the password policy's history count and the maximum number of keys, which can cause an array index out-of-bounds error and may allow authenticated users to…
ModificadaCrítica (9.8)7.0%—MIT Kerberos 5OpenpkgDebian Linux20/10/200416/6/2026
Double free vulnerabilities in error handling code in krb524d for MIT Kerberos 5 (krb5) 1.2.8 and earlier may allow remote attackers to execute arbitrary code.
ModificadaMedia (4.6)8.9%—MIT Kerberos 5Debian LinuxRedhat Enterprise Linux DesktopRedhat Enterprise Linux Server+128/9/200416/6/2026
Double free vulnerability in the krb5_rd_cred function for MIT Kerberos 5 (krb5) 1.3.1 and earlier may allow local users to execute arbitrary code.
ModificadaMedia (5)5.6%—MIT Kerberos 528/9/200416/6/2026
The asn1buf_skiptail function in the ASN.1 decoder library for MIT Kerberos 5 (krb5) 1.2.2 through 1.3.4 allows remote attackers to cause a denial of service (infinite loop) via a certain BER encoding.
ModificadaAlta (7.5)8.3%—MIT Kerberos 5Debian LinuxRedhat Enterprise Linux DesktopRedhat Enterprise Linux Server+128/9/200416/6/2026
Double free vulnerabilities in the error handling code for ASN.1 decoders in the (1) Key Distribution Center (KDC) library and (2) client library for MIT Kerberos 5 (krb5) 1.3.4 and earlier may allow remote attackers to execute arbitrary code.
ModificadaAlta (10)12%—MIT KerberosMIT Kerberos 5SGI PropackSUN Seam+318/8/200416/6/2026
Multiple buffer overflows in krb5_aname_to_localname for MIT Kerberos 5 (krb5) 1.3.3 and earlier allow remote attackers to execute arbitrary code as root.
ModificadaMedia (5)1.9%—MIT KerberosMIT Kerberos 52/4/200316/6/2026
The Key Distribution Center (KDC) in Kerberos 5 (krb5) 1.2.7 and earlier allows remote, authenticated attackers to cause a denial of service (crash) on KDCs within the same realm using a certain protocol request that causes an out-of-bounds read of an array (aka "array overrun").
ModificadaMedia (5)2.7%—MIT KerberosMIT Kerberos 52/4/200316/6/2026
The Key Distribution Center (KDC) in Kerberos 5 (krb5) 1.2.7 and earlier allows remote, authenticated attackers to cause a denial of service (crash) on KDCs within the same realm using a certain protocol request that causes the KDC to corrupt its heap (aka "buffer underrun").
ModificadaAlta (7.5)15%—GNU GlibcMIT Kerberos 5OpenafsSGI Irix+925/3/200316/6/2026
Integer overflow in the xdrmem_getbytes() function, and possibly other functions, of XDR (external data representation) libraries derived from SunRPC, including libnsl, libc, glibc, and dietlibc, allows remote attackers to execute arbitrary code via certain integer values in length fields, a different vulnerability…
ModificadaMedia (5)4.8%—MIT Kerberos 5SUN Enterprise Authentication MechanismSUN SolarisSunos19/2/200316/6/2026
MIT Kerberos V5 Key Distribution Center (KDC) before 1.2.5 allows remote authenticated attackers to cause a denial of service (crash) on KDCs within the same realm via a certain protocol request that causes a null dereference.
ModificadaAlta (7.5)3.6%—MIT Kerberos 519/2/200316/6/2026
Unknown vulnerability in the chk_trans.c of the libkrb5 library for MIT Kerberos V5 before 1.2.5 allows users from one realm to impersonate users in other realms that have the same inter-realm keys.
ModificadaMedia (5)4.5%—MIT Kerberos 519/2/200316/6/2026
Integer signedness error in MIT Kerberos V5 ASN.1 decoder before krb5 1.2.5 allows remote attackers to cause a denial of service via a large unsigned data element length, which is later used as a negative value.
ModificadaAlta (7.5)5.6%—MIT Kerberos 519/2/200316/6/2026
Format string vulnerabilities in the logging routines for MIT Kerberos V5 Key Distribution Center (KDC) before 1.2.5 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via format string specifiers in Kerberos principal names.
ModificadaAlta (10)15%—KTH Kerberos 4KTH Kerberos 5MIT Kerberos 5Debian Linux4/11/200216/6/2026
The kadm_ser_in function in (1) the Kerberos v4compatibility administration daemon (kadmind4) in the MIT Kerberos 5 (krb5) krb5-1.2.6 and earlier, (2) kadmind in KTH Kerberos 4 (eBones) before 1.2.1, and (3) kadmind in KTH Kerberos 5 (Heimdal) before 0.5.1 when compiled with Kerberos 4 support, does not properly…
ModificadaAlta (10)39%💥 ExploitMIT KerberosMIT Kerberos 5Linux NetkitSGI Irix+714/8/200116/6/2026
Buffer overflow in BSD-based telnetd telnet daemon on various operating systems allows remote attackers to execute arbitrary commands via a set of options including AYT (Are You There), which is not properly handled by the telrcv function.
ModificadaBaja (2.1)0.41%—MIT KerberosMIT Kerberos 527/6/200116/6/2026
Kerberos 4 (aka krb4) allows local users to overwrite arbitrary files via a symlink attack on new ticket files.
Orbitaley — Vulnerabilidades