← back
CVE-2019-14844

CVE-2019-14844

CVSS 7.5 HIGHEPSS 4.4%CWE-628
A flaw was found in, Fedora versions of krb5 from 1.16.1 to, including 1.17.x, in the way a Kerberos client could crash the KDC by sending one of the RFC 4556 "enctypes". A remote unauthenticated user could use this flaw to crash the KDC.
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Affected products
MIT · krb5

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →