CVE-2024-37371
In MIT Kerberos 5 (aka krb5) before 1.21.3, an attacker can cause invalid memory reads during GSS message token handling
In MIT Kerberos 5 (aka krb5) before 1.21.3, an attacker can cause invalid memory reads during GSS message token handling by sending message tokens with invalid length fields.
CRITICAL · CVSS 9.1
EPSS 0.02606
Schedule remediation
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0