Vulnerabilities > GSS Ntlmssp Project

DATE CVE VULNERABILITY TITLE RISK
2023-02-14 CVE-2023-25563 Out-of-bounds Read vulnerability in Gss-Ntlmssp Project Gss-Ntlmssp
GSS-NTLMSSP is a mechglue plugin for the GSSAPI library that implements NTLM authentication.
network
low complexity
gss-ntlmssp-project CWE-125
7.5
2023-02-14 CVE-2023-25564 Out-of-bounds Write vulnerability in Gss-Ntlmssp Project Gss-Ntlmssp
GSS-NTLMSSP is a mechglue plugin for the GSSAPI library that implements NTLM authentication.
network
low complexity
gss-ntlmssp-project CWE-787
8.2
2023-02-14 CVE-2023-25565 Release of Invalid Pointer or Reference vulnerability in Gss-Ntlmssp Project Gss-Ntlmssp
GSS-NTLMSSP is a mechglue plugin for the GSSAPI library that implements NTLM authentication.
network
low complexity
gss-ntlmssp-project CWE-763
7.5
2023-02-14 CVE-2023-25566 Memory Leak vulnerability in Gss-Ntlmssp Project Gss-Ntlmssp
GSS-NTLMSSP is a mechglue plugin for the GSSAPI library that implements NTLM authentication.
network
low complexity
gss-ntlmssp-project CWE-401
7.5
2023-02-14 CVE-2023-25567 Out-of-bounds Read vulnerability in Gss-Ntlmssp Project Gss-Ntlmssp
GSS-NTLMSSP, a mechglue plugin for the GSSAPI library that implements NTLM authentication, has an out-of-bounds read when decoding target information prior to version 1.2.0.
network
low complexity
gss-ntlmssp-project CWE-125
7.5