cbcvebase.
CVE-2014-8650
published 2019-12-15

CVE-2014-8650: python-requests-Kerberos through 0.5 does not handle mutual authentication

PriorityP355critical9.8CVSS 3.1
AVNACLPRNUINSUCHIHAH
EPSS
3.65%
88.4th percentile
python-requests-Kerberos through 0.5 does not handle mutual authentication

Affected

6 ranges
VendorProductVersion rangeFixed in
debiandebian_linux
debiandebian_linux
debiandebian_linux
debianpython-requests-kerberos< python-requests-kerberos 0.5-2 (bookworm)python-requests-kerberos 0.5-2 (bookworm)
requests-kerberos_projectrequests-kerberos<= 0.5
requests-kerberos_projectrequests-kerberos>= 0 < 0.60.6

CVSS provenance

nvdv3.19.8CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvdv2.07.5HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
osv9.8CRITICAL
vendor_debian9.8CRITICAL
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.