CVE-2002-1226
published 2002-10-28CVE-2002-1226: Unknown vulnerabilities in Heimdal before 0.5 with unknown impact, possibly in the (1) kadmind and (2) kdc servers, may allow remote or local attackers to gain…
PriorityP430critical10CVSS 2.0
AVNACLAuNCCICAC
EPSS
2.39%
82.1th percentile
Unknown vulnerabilities in Heimdal before 0.5 with unknown impact, possibly in the (1) kadmind and (2) kdc servers, may allow remote or local attackers to gain root or other access, but not via buffer overflows (CVE-2002-1225).
Affected
11 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | heimdal | < heimdal 0.4e-21 (bookworm) | heimdal 0.4e-21 (bookworm) |
| heimdal_project | heimdal | >= 0 < 0.4e-21 | 0.4e-21 |
| heimdal_project | heimdal | >= 0 < 0.4e-21 | 0.4e-21 |
| heimdal_project | heimdal | >= 0 < 0.4e-21 | 0.4e-21 |
| heimdal_project | heimdal | >= 0 < 0.4e-21 | 0.4e-21 |
| kth | heimdal | — | — |
| kth | heimdal | — | — |
| kth | heimdal | — | — |
| kth | heimdal | — | — |
| kth | heimdal | — | — |
| kth | heimdal | — | — |
CVSS provenance
nvdv2.010.0CRITICALAV:N/AC:L/Au:N/C:C/I:C/A:C
osv10.0CRITICAL
vendor_debian10.0CRITICAL
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-vvvj-29m3-wc9p: Unknown vulnerabilities in Heimdal before 0
ghsa_unreviewed·2022-04-30·CVSS 10.0
CVE-2002-1226 [CRITICAL] GHSA-vvvj-29m3-wc9p: Unknown vulnerabilities in Heimdal before 0
Unknown vulnerabilities in Heimdal before 0.5 with unknown impact, possibly in the (1) kadmind and (2) kdc servers, may allow remote or local attackers to gain root or other access, but not via buffer overflows (CVE-2002-1225).
OSV
CVE-2002-1226: Unknown vulnerabilities in Heimdal before 0
osv·2002-10-28·CVSS 10.0
CVE-2002-1226 [CRITICAL] CVE-2002-1226: Unknown vulnerabilities in Heimdal before 0
Unknown vulnerabilities in Heimdal before 0.5 with unknown impact, possibly in the (1) kadmind and (2) kdc servers, may allow remote or local attackers to gain root or other access, but not via buffer overflows (CVE-2002-1225).
Debian
CVE-2002-1226: heimdal - Unknown vulnerabilities in Heimdal before 0.5 with unknown impact, possibly in t...
vendor_debian·2002·CVSS 10.0
CVE-2002-1226 [CRITICAL] CVE-2002-1226: heimdal - Unknown vulnerabilities in Heimdal before 0.5 with unknown impact, possibly in t...
Unknown vulnerabilities in Heimdal before 0.5 with unknown impact, possibly in the (1) kadmind and (2) kdc servers, may allow remote or local attackers to gain root or other access, but not via buffer overflows (CVE-2002-1225).
Scope: local
bookworm: resolved (fixed in 0.4e-21)
bullseye: resolved (fixed in 0.4e-21)
forky: resolved (fixed in 0.4e-21)
sid: resolved (fixed in 0.4e-21)
trixie: resolved (fixed in 0.4e-21)
Suricata
GPL EXPLOIT kadmind buffer overflow attempt
suricata·2010-09-23
CVE-2002-1226 GPL EXPLOIT kadmind buffer overflow attempt
GPL EXPLOIT kadmind buffer overflow attempt
Rule: alert tcp $EXTERNAL_NET any -> $HOME_NET 749 (msg:"GPL EXPLOIT kadmind buffer overflow attempt"; flow:established,to_server; content:"|00 C0 05 08 00 C0 05 08 00 C0 05 08 00 C0 05 08|"; reference:bugtraq,5731; reference:bugtraq,6024; reference:cve,2002-1226; reference:cve,2002-1235; reference:url,www.kb.cert.org/vuls/id/875073; classtype:shellcode-detect; sid:2101894; rev:9; metadata:created_at 2010_09_23, cve CVE_2002_1226, confidence High, signature_severity Major, updated_at 2019_07_26;)
Suricata
GPL EXPLOIT kadmind buffer overflow attempt
suricata·2010-09-23
CVE-2002-1226 GPL EXPLOIT kadmind buffer overflow attempt
GPL EXPLOIT kadmind buffer overflow attempt
Rule: alert tcp $EXTERNAL_NET any -> $HOME_NET 751 (msg:"GPL EXPLOIT kadmind buffer overflow attempt"; flow:established,to_server; content:"|FF FF|KADM0.0A|00 00 FB 03|"; reference:bugtraq,5731; reference:bugtraq,6024; reference:cve,2002-1226; reference:cve,2002-1235; reference:url,www.kb.cert.org/vuls/id/875073; classtype:shellcode-detect; sid:2101897; rev:9; metadata:created_at 2010_09_23, cve CVE_2002_1226, confidence High, signature_severity Major, updated_at 2019_07_26;)
Suricata
GPL EXPLOIT kadmind buffer overflow attempt
suricata·2010-09-23
CVE-2002-1226 GPL EXPLOIT kadmind buffer overflow attempt
GPL EXPLOIT kadmind buffer overflow attempt
Rule: alert tcp $EXTERNAL_NET any -> $HOME_NET 751 (msg:"GPL EXPLOIT kadmind buffer overflow attempt"; flow:established,to_server; content:"|00 C0 05 08 00 C0 05 08 00 C0 05 08 00 C0 05 08|"; reference:bugtraq,5731; reference:bugtraq,6024; reference:cve,2002-1226; reference:cve,2002-1235; reference:url,www.kb.cert.org/vuls/id/875073; classtype:shellcode-detect; sid:2101895; rev:9; metadata:created_at 2010_09_23, cve CVE_2002_1226, confidence High, signature_severity Major, updated_at 2019_07_26;)
Suricata
GPL EXPLOIT kadmind buffer overflow attempt
suricata·2010-09-23
CVE-2002-1226 GPL EXPLOIT kadmind buffer overflow attempt
GPL EXPLOIT kadmind buffer overflow attempt
Rule: alert tcp $EXTERNAL_NET any -> $HOME_NET 749 (msg:"GPL EXPLOIT kadmind buffer overflow attempt"; flow:established,to_server; content:"|FF FF|KADM0.0A|00 00 FB 03|"; reference:bugtraq,5731; reference:bugtraq,6024; reference:cve,2002-1226; reference:cve,2002-1235; reference:url,www.kb.cert.org/vuls/id/875073; classtype:shellcode-detect; sid:2101896; rev:9; metadata:created_at 2010_09_23, cve CVE_2002_1226, confidence High, signature_severity Major, updated_at 2019_07_26;)
No public exploits indexed.
No writeups or analysis indexed.
2002-10-28
Published