CVE-2017-17439

In Heimdal through 7.4, remote unauthenticated attackers are able to crash the KDC by sending a crafted UDP packet containing empty data fields for client name or realm. The parser would unconditionally dereference NULL pointers in that case, leading to a segmentation fault. This is related to the _kdc_as_rep function in kdc/kerberos5.c and the der_length_visible_string function in lib/asn1/der_length.c.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
7.5 HIGH
NETWORK
LOW
NONE
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 92%
VendorProductVersion
debiandebian_linux
9.0
heimdal_projectheimdal
𝑥
≤ 7.4.0
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
heimdal
bullseye (security)
7.7.0+dfsg-2+deb11u3
fixed
bullseye
7.7.0+dfsg-2+deb11u3
fixed
jessie
not-affected
wheezy
not-affected
bookworm
7.8.git20221117.28daf24+dfsg-2
fixed
sid
7.8.git20221117.28daf24+dfsg-8
fixed
trixie
7.8.git20221117.28daf24+dfsg-8
fixed
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
heimdal
cosmic
not-affected
bionic
not-affected
artful
ignored
zesty
ignored
xenial
not-affected
trusty
not-affected