[Git][security-tracker-team/security-tracker][master] Add CVE-2021-36222/krb5

Salvatore Bonaccorso (@carnil) carnil at debian.org
Tue Jul 20 07:49:52 BST 2021



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
54cec42d by Salvatore Bonaccorso at 2021-07-20T08:47:50+02:00
Add CVE-2021-36222/krb5

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1251,8 +1251,10 @@ CVE-2021-36224
 	RESERVED
 CVE-2021-36223
 	RESERVED
-CVE-2021-36222
+CVE-2021-36222 [sending a request containing a PA-ENCRYPTED-CHALLENGE padata element without using FAST could result in null dereference in the KDC which leads to DoS]
 	RESERVED
+	- krb5 <unfixed>
+	NOTE: https://github.com/krb5/krb5/commit/fc98f520caefff2e5ee9a0026fdf5109944b3562
 CVE-2021-36221
 	RESERVED
 CVE-2021-36220



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/54cec42d124bf62c440298dc4a76f0cf003cdaaa

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/54cec42d124bf62c440298dc4a76f0cf003cdaaa
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20210720/b8558ebf/attachment.htm>


More information about the debian-security-tracker-commits mailing list