CVE-2020-28196

MIT Kerberos 5 (aka krb5) before 1.17.2 and 1.18.x before 1.18.3 allows unbounded recursion via an ASN.1-encoded Kerberos message because the lib/krb5/asn.1/asn1_encode.c support for BER indefinite lengths lacks a recursion limit.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
7.5 HIGH
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 61%
VendorProductVersion
mitkerberos_5
𝑥
< 1.17.2
mitkerberos_5
1.18.0 ≤
𝑥
< 1.18.3
netappactive_iq_unified_manager
-
netappactive_iq_unified_manager
-
netappcloud_backup
-
netapponcommand_insight
-
netapponcommand_workflow_automation
-
netappsnapcenter
-
oraclecommunications_cloud_native_core_policy
1.14.0
oraclecommunications_offline_mediation_controller
12.0.0.3.0
oraclecommunications_pricing_design_center
12.0.0.3.0
oraclemysql_server
𝑥
≤ 8.0.23
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
krb5
bullseye (security)
1.18.3-6+deb11u5
fixed
bullseye
1.18.3-6+deb11u5
fixed
bookworm
1.20.1-2+deb12u2
fixed
bookworm (security)
1.20.1-2+deb12u2
fixed
sid
1.21.3-3
fixed
trixie
1.21.3-3
fixed
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
krb5
groovy
Fixed 1.17-10ubuntu0.1
released
focal
Fixed 1.17-6ubuntu4.1
released
bionic
Fixed 1.16-2ubuntu0.2
released
xenial
Fixed 1.13.2+dfsg-5ubuntu2.2
released
trusty
Fixed 1.12+dfsg-2ubuntu5.4+esm2
released
References