VendorsKTHkth_kerberos4
Vulnerabilities

KTH Kth Kerberos 4

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

6CVEs
CVE-2001-1444
The Kerberos Telnet protocol, as implemented by KTH Kerberos IV and Kerberos V (Heimdal), does not encrypt authentication and encryption options sent from the server, which allows remote attackers to downgrade authentication and encryption mechanisms via a man-in-the-middle attack.
Published 2005-04-21 · Modified
7.5EPSS 0.013
CVE-2001-0035
Buffer overflow in the kdc_reply_cipher function in KTH Kerberos IV allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long authentication request.
Published 2001-05-07 · Modified
7.2EPSS 0.025
CVE-2001-0033
KTH Kerberos IV allows local users to change the configuration of a Kerberos server running at an elevated privilege by specifying an alternate directory using with the KRBCONFDIR environmental variable, which allows the user to gain additional privileges.
Published 2001-05-07 · Modified
7.2EPSS 0.005
CVE-1999-1099
Kerberos 4 allows remote attackers to obtain sensitive information via a malformed UDP packet that generates an error string that inadvertently includes the realm name and the last user.
Published 2002-03-09 · Modified
5.0EPSS 0.013
CVE-2001-1443
KTH Kerberos IV and Kerberos V (Heimdal) for Telnet clients do not encrypt connections if the server does not support the requested encryption, which allows remote attackers to read communications via a man-in-the-middle attack.
Published 2005-04-21 · Modified
5.0EPSS 0.011
CVE-2001-0036
KTH Kerberos IV allows local users to overwrite arbitrary files via a symlink attack on a ticket file.
Published 2001-05-07 · Modified
1.2EPSS 0.004