Total vulnerabilities in the database
MIT Kerberos 5 (aka krb5) before 1.17.2 and 1.18.x before 1.18.3 allows unbounded recursion via an ASN.1-encoded Kerberos message because the lib/krb5/asn.1/asn1_encode.c support for BER indefinite lengths lacks a recursion limit.
Software | From | Fixed in |
---|---|---|
mit / kerberos_5 | 1.18.0 | 1.18.3 |
mit / kerberos_5 | - | 1.17.2 |
fedoraproject / fedora | 31 | 31.x |
oracle / communications_offline_mediation_controller | 12.0.0.3.0 | 12.0.0.3.0.x |
oracle / mysql_server | - | 8.0.23.x |
oracle / communications_pricing_design_center | 12.0.0.3.0 | 12.0.0.3.0.x |
oracle / communications_cloud_native_core_policy | 1.14.0 | 1.14.0.x |