V
Scaner-VS
HomeCatalogSourcesCWECAPECATT&CKMitigationsDocs
CVE-2011-0282
ANC
MediumConfirmedExploit available

The Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) 1.6.x through 1.9, when an LDAP backend is used, allows remote attackers to …

CVSS
5.0
Medium
EPSS
0.10
p93
Published
2011-01-01
Updated
2011-01-01
Description

The Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) 1.6.x through 1.9, when an LDAP backend is used, allows remote attackers to cause a denial of service (NULL pointer dereference or buffer over-read, and daemon crash) via a crafted principal name.

Affected products
KerberosKerberos_5
CVSS vector
AV:N/AC:L/Au:N/C:N/I:N/A:P
Timeline
2011-01-01
Published
2011-01-01
Updated
CVSS 3.1 breakdown
Attack Vector
AV: N
Network (N)
Attack Complexity
AC: L
Low (L)
Authentication
Au: N
None (N)
Confidentiality Impact
C: N
None (N)
Integrity Impact
I: N
None (N)
Availability Impact
A: P
Partial
Exploit indicators
EPSS
0.096 · p93
Known exploited (KEV)
No
Known exploits — Сканер-ВС
33855
exploitdb · https://www.exploit-db.com/exploits/33855
Enterprise
35606
exploitdb · https://www.exploit-db.com/exploits/35606
Enterprise
Affected software
ProductVendorStatus
Tracked
krb5Tracked
krb5Tracked
krb5Tracked
krb5Tracked
krb5Tracked
krb5Tracked
kerberos*Tracked
kerberos_5*Tracked
Source databases
ANC
DEB
CVE
RED
UBU
Related vulnerabilities