cbcvebase.
CVE-2015-8631
published 2016-02-13

CVE-2015-8631: Multiple memory leaks in kadmin/server/server_stubs.c in kadmind in MIT Kerberos 5 (aka krb5) before 1.13.4 and 1.14.x before 1.14.1 allow remote authenticated…

medium6.5CVSS 3.1
AVNACLPRLUINSUCNINAH
Multiple memory leaks in kadmin/server/server_stubs.c in kadmind in MIT Kerberos 5 (aka krb5) before 1.13.4 and 1.14.x before 1.14.1 allow remote authenticated users to cause a denial of service (memory consumption) via a request specifying a NULL principal name.

Affected

35 ranges· showing 25
VendorProductVersion rangeFixed in
debiandebian_linux
debiandebian_linux
debiankrb5< krb5 1.13.2+dfsg-5 (bookworm)krb5 1.13.2+dfsg-5 (bookworm)
mitkerberos_5< 1.13.41.13.4
mitkerberos_5>= 1.14 < 1.14.11.14.1
mitkrb5>= 0 < 1.13.2+dfsg-51.13.2+dfsg-5
mitkrb5>= 0 < 1.13.2+dfsg-51.13.2+dfsg-5
mitkrb5>= 0 < 1.13.2+dfsg-51.13.2+dfsg-5
mitkrb5>= 0 < 1.13.2+dfsg-51.13.2+dfsg-5
opensuseleap
opensuseopensuse
oraclelinux
oraclelinux
redhatenterprise_linux_desktop
redhatenterprise_linux_desktop
redhatenterprise_linux_eus
redhatenterprise_linux_eus
redhatenterprise_linux_eus
redhatenterprise_linux_eus
redhatenterprise_linux_eus
redhatenterprise_linux_eus
redhatenterprise_linux_eus
redhatenterprise_linux_server
redhatenterprise_linux_server
redhatenterprise_linux_server_aus

CVSS provenance

nvdv3.16.5MEDIUMCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv6.5MEDIUM