CVE-2004-0643

MIT Kerberos 5 <1.3.1 - Use After Free

Title source: llm

Description

Double free vulnerability in the krb5_rd_cred function for MIT Kerberos 5 (krb5) 1.3.1 and earlier may allow local users to execute arbitrary code.

Scores

EPSS 0.0013
EPSS Percentile 32.6%

Classification

CWE
CWE-415
Status draft

Affected Products (5)

mit/kerberos_5 < 1.3.3
debian/debian_linux
redhat/enterprise_linux_desktop
redhat/enterprise_linux_server
redhat/enterprise_linux_workstation

Timeline

Published Sep 28, 2004
Tracked Since Feb 18, 2026