Jeffrey Altman

2 exploits Active since Dec 2017
CVE-2017-17439 WRITEUP HIGH WRITEUP
Debian Linux < 7.4.0 - NULL Pointer Dereference
In Heimdal through 7.4, remote unauthenticated attackers are able to crash the KDC by sending a crafted UDP packet containing empty data fields for client name or realm. The parser would unconditionally dereference NULL pointers in that case, leading to a segmentation fault. This is related to the _kdc_as_rep function in kdc/kerberos5.c and the der_length_visible_string function in lib/asn1/der_length.c.
CVSS 7.5
CVE-2019-12098 WRITEUP HIGH WRITEUP
Heimdal <7.6.0 - Privilege Escalation
In the client side of Heimdal before 7.6.0, failure to verify anonymous PKINIT PA-PKINIT-KX key exchange permits a man-in-the-middle attack. This issue is in krb5_init_creds_step in lib/krb5/init_creds_pw.c.
CVSS 7.4