Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Read one byte past a buffer when normalizing Unicode
Vulnerability Description
Heimdal is an implementation of ASN.1/DER, PKIX, and Kerberos. Versions prior to 7.7.1 are vulnerable to a denial of service vulnerability in Heimdal's PKI certificate validation library, affecting the KDC (via PKINIT) and kinit (via PKINIT), as well as any third-party applications using Heimdal's libhx509. Users should upgrade to Heimdal 7.7.1 or 7.8. There are no known workarounds for this issue.
CVSS Information
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H
Vulnerability Type
Off-by-one错误
Vulnerability Title
Heimdal 安全漏洞
Vulnerability Description
Heimdal是Heimdal开源的一个 Kerberos 的实现及安全程序。 Heimdal 7.7.1之前版本存在安全漏洞,该漏洞源于PKI证书验证库中的存在拒绝服务
CVSS Information
N/A
Vulnerability Type
N/A