Vulnerabilities > MIT > Kerberos 5

DATE CVE VULNERABILITY TITLE RISK
2006-08-09 CVE-2006-3083 Resource Management Errors vulnerability in multiple products
The (1) krshd and (2) v4rcp applications in (a) MIT Kerberos 5 (krb5) up to 1.5, and 1.4.x before 1.4.4, when running on Linux and AIX, and (b) Heimdal 0.7.2 and earlier, do not check return codes for setuid calls, which allows local users to gain privileges by causing setuid to fail to drop privileges using attacks such as resource exhaustion.
local
low complexity
heimdal mit CWE-399
7.2
2005-07-18 CVE-2005-1689 Double Free vulnerability in multiple products
Double free vulnerability in the krb5_recvauth function in MIT Kerberos 5 (krb5) 1.4.1 and earlier allows remote attackers to execute arbitrary code via certain error conditions.
network
low complexity
mit apple debian CWE-415
critical
9.8
2005-07-18 CVE-2005-1175 Remote Single Byte Heap Overflow vulnerability in MIT Kerberos 5 Key Distribution Center
Heap-based buffer overflow in the Key Distribution Center (KDC) in MIT Kerberos 5 (krb5) 1.4.1 and earlier allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a certain valid TCP or UDP request.
network
low complexity
mit
7.5
2005-07-18 CVE-2005-1174 Remote Denial of Service vulnerability in MIT Kerberos 5 Key Distribution Center
MIT Kerberos 5 (krb5) 1.3 through 1.4.1 Key Distribution Center (KDC) allows remote attackers to cause a denial of service (application crash) via a certain valid TCP connection that causes a free of unallocated memory.
network
low complexity
mit
5.0
2005-06-14 CVE-2005-0488 Remote Information Disclosure vulnerability in Multiple Vendor Telnet Client
Certain BSD-based Telnet clients, including those used on Solaris and SuSE Linux, allow remote malicious Telnet servers to read sensitive environment variables via the NEW-ENVIRON option with a SEND ENV_USERVAR command.
network
low complexity
microsoft mit sun
5.0
2004-12-31 CVE-2004-1189 Out-Of-Bounds Write vulnerability in MIT Kerberos 5
The add_to_history function in svr_principal.c in libkadm5srv for MIT Kerberos 5 (krb5) up to 1.3.5, when performing a password change, does not properly track the password policy's history count and the maximum number of keys, which can cause an array index out-of-bounds error and may allow authenticated users to execute arbitrary code via a heap-based buffer overflow.
local
low complexity
mit CWE-787
7.2
2004-10-20 CVE-2004-0772 Double Free vulnerability in multiple products
Double free vulnerabilities in error handling code in krb524d for MIT Kerberos 5 (krb5) 1.2.8 and earlier may allow remote attackers to execute arbitrary code.
network
low complexity
mit openpkg debian CWE-415
critical
9.8
2004-09-28 CVE-2004-0644 Denial Of Service vulnerability in MIT Kerberos 5 ASN.1 Decoder
The asn1buf_skiptail function in the ASN.1 decoder library for MIT Kerberos 5 (krb5) 1.2.2 through 1.3.4 allows remote attackers to cause a denial of service (infinite loop) via a certain BER encoding.
network
low complexity
mit
5.0
2004-09-28 CVE-2004-0643 Double Free vulnerability in multiple products
Double free vulnerability in the krb5_rd_cred function for MIT Kerberos 5 (krb5) 1.3.1 and earlier may allow local users to execute arbitrary code.
local
low complexity
mit debian redhat CWE-415
4.6
2004-08-18 CVE-2004-0523 Principal Name Buffer Overrun vulnerability in MIT Kerberos 5 KRB5_AName_To_Localname
Multiple buffer overflows in krb5_aname_to_localname for MIT Kerberos 5 (krb5) 1.3.3 and earlier allow remote attackers to execute arbitrary code as root.
network
low complexity
mit sgi sun tinysofa
critical
10.0