CVE Vulnerabilities

CVE-2022-44640

Published: Dec 25, 2022 | Modified: Oct 08, 2023
CVSS 3.x
9.8
CRITICAL
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM

Heimdal before 7.7.1 allows remote attackers to execute arbitrary code because of an invalid free in the ASN.1 codec used by the Key Distribution Center (KDC).

Affected Software

Name Vendor Start Version End Version
Heimdal Heimdal_project * 7.7.1 (excluding)
Heimdal Ubuntu bionic *
Heimdal Ubuntu devel *
Heimdal Ubuntu esm-apps/jammy *
Heimdal Ubuntu esm-apps/noble *
Heimdal Ubuntu esm-infra/xenial *
Heimdal Ubuntu focal *
Heimdal Ubuntu jammy *
Heimdal Ubuntu kinetic *
Heimdal Ubuntu lunar *
Heimdal Ubuntu mantic *
Heimdal Ubuntu noble *
Heimdal Ubuntu oracular *
Heimdal Ubuntu trusty *
Heimdal Ubuntu trusty/esm *
Heimdal Ubuntu upstream *
Heimdal Ubuntu xenial *
Samba Ubuntu trusty *
Samba Ubuntu upstream *
Samba Ubuntu xenial *

References