Skip to main content

Vendor archive

mit CVEs

Beta · best-effort

156 CVEs tagged to vendor mit38 Critical, 42 High, 66 Medium, 10 Low, 0 Unrated.

CVE-2026-40356

Published Apr 28, 2026

In MIT Kerberos 5 (aka krb5) before 1.22.3, there is an integer underflow and resultant out-of-bounds read if an application calls gss_accept_sec_context() on a system with a Nego…

CVSS 5.9 · Medium
evidence mentions
4
Buzz score
32.6
Vendor/product tagsBeta · best-effort

CVE-2026-40355

Published Apr 28, 2026

In MIT Kerberos 5 (aka krb5) before 1.22.3, there is a NULL pointer dereference if an application calls gss_accept_sec_context() on a system with a NegoEx mechanism registered in…

CVSS 5.9 · Medium
evidence mentions
7
Buzz score
40.8
Vendor/product tagsBeta · best-effort

CVE-2024-37371

Published Jun 28, 2024

In MIT Kerberos 5 (aka krb5) before 1.21.3, an attacker can cause invalid memory reads during GSS message token handling by sending message tokens with invalid length fields.

CVSS 9.1 · Critical
Vendor/product tagsBeta · best-effort

CVE-2024-37370

Published Jun 28, 2024

In MIT Kerberos 5 (aka krb5) before 1.21.3, an attacker can modify the plaintext Extra Count field of a confidential GSS krb5 wrap token, causing the unwrapped token to appear tru…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2023-39975

Published Aug 16, 2023

kdc/do_tgs_req.c in MIT Kerberos 5 (aka krb5) 1.21 before 1.21.2 has a double free that is reachable if an authenticated user can trigger an authorization-data handling failure. I…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2020-27428

Published Jan 6, 2022

A DOM-based cross-site scripting (XSS) vulnerability in Scratch-Svg-Renderer v0.2.0 allows attackers to execute arbitrary web scripts or HTML via a crafted sb3 file.

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-32471

Published May 10, 2021

Insufficient input validation in the Marvin Minsky 1967 implementation of the Universal Turing Machine allows program users to execute arbitrary code via crafted data. For example…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2019-25018

Published Feb 2, 2021

In the rcp client in MIT krb5-appl through 1.0.3, malicious servers could bypass intended access restrictions via the filename of . or an empty filename, similar to CVE-2018-20685…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2019-25017

Published Feb 2, 2021

An issue was discovered in rcp in MIT krb5-appl through 1.0.3. Due to the rcp implementation being derived from 1983 rcp, the server chooses which files/directories are sent to th…

CVSS 5.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-28196

Published Nov 6, 2020

MIT Kerberos 5 (aka krb5) before 1.17.2 and 1.18.x before 1.18.3 allows unbounded recursion via an ASN.1-encoded Kerberos message because the lib/krb5/asn.1/asn1_encode.c support…

CVSS 7.5 · High

CVE-2020-7750

Published Oct 21, 2020

This affects the package scratch-svg-renderer before 0.2.0-prerelease.20201019174008. The loadString function does not escape SVG properly, which can be used to inject arbitrary e…

CVSS 9.6 · Critical
Vendor/product tagsBeta · best-effort

CVE-2020-14000

Published Jul 16, 2020

MIT Lifelong Kindergarten Scratch scratch-vm before 0.2.0-prerelease.20200714185213 loads extension URLs from untrusted project.json files with certain _ characters, resulting in…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2019-14844

Published Sep 26, 2019

A flaw was found in, Fedora versions of krb5 from 1.16.1 to, including 1.17.x, in the way a Kerberos client could crash the KDC by sending one of the RFC 4556 "enctypes". A remote…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2018-20217

Published Dec 26, 2018

A Reachable Assertion issue was discovered in the KDC in MIT Kerberos 5 (aka krb5) before 1.17. If an attacker can obtain a krbtgt ticket using an older encryption type (single-DE…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-25 of 156 CVEsPage 1 of 7