Show filters
4 Total Results
Displaying 1-4 of 4
Sort by:
Attacker Value
Unknown

CVE-2004-0371

Disclosure Date: May 04, 2004 (last updated February 22, 2025)
Heimdal 0.6.x before 0.6.1 and 0.5.x before 0.5.3 does not properly perform certain consistency checks for cross-realm requests, which allows remote attackers with control of a realm to impersonate others in the cross-realm trust path.
0
Attacker Value
Unknown

CVE-2002-1225

Disclosure Date: October 28, 2002 (last updated February 22, 2025)
Multiple buffer overflows in Heimdal before 0.5, possibly in both the (1) kadmind and (2) kdc servers, may allow remote attackers to gain root access.
0
Attacker Value
Unknown

CVE-2002-1226

Disclosure Date: October 28, 2002 (last updated February 22, 2025)
Unknown vulnerabilities in Heimdal before 0.5 with unknown impact, possibly in the (1) kadmind and (2) kdc servers, may allow remote or local attackers to gain root or other access, but not via buffer overflows (CVE-2002-1225).
0
Attacker Value
Unknown

CVE-2002-0754

Disclosure Date: August 12, 2002 (last updated February 22, 2025)
Kerberos 5 su (k5su) in FreeBSD 4.4 and earlier relies on the getlogin system call to determine if the user running k5su is root, which could allow a root-initiated process to regain its privileges after it has dropped them.
0