CVE-2007-5902 PUBLISHED CVSS 10 CRITICAL

Integer overflow in the svcauth_gss_get_principal function in lib/rpc/svc_auth_gss.c in MIT Kerberos 5 (krb5) allows remote attackers to have an unknown impact via a large length value for a GSS client name in an RPC request.

EPSS 4.00% · 88.3th percentile

Risk Scores

CVSS v2.0
10
EPSS Score
4.00%
88.3th percentile

Affected Products

VendorProductVersions
n/an/an/a
mitkerberos_5

Timeline

References

Open in Interactive Console →