vulnerability

SUSE: CVE-2021-44758: SUSE Linux Security Advisory

Severity
8
CVSS
(AV:N/AC:L/Au:N/C:N/I:N/A:C)
Published
Dec 26, 2022
Added
Aug 9, 2024
Modified
Jan 28, 2025

Description

Heimdal before 7.7.1 allows attackers to cause a NULL pointer dereference in a SPNEGO acceptor via a preferred_mech_type of GSS_C_NO_OID and a nonzero initial_response value to send_accept.

Solutions

suse-upgrade-libasn1-8suse-upgrade-libgssapi3suse-upgrade-libhcrypto4suse-upgrade-libhdb9suse-upgrade-libheimbase1suse-upgrade-libheimdal-develsuse-upgrade-libheimedit0suse-upgrade-libheimntlm0suse-upgrade-libhx509-5suse-upgrade-libkadm5clnt7suse-upgrade-libkadm5srv8suse-upgrade-libkafs0suse-upgrade-libkdc2suse-upgrade-libkrb5-26suse-upgrade-libotp0suse-upgrade-libroken18suse-upgrade-libsl0suse-upgrade-libwind0
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.