Heimdal before 7.7.1 allows remote attackers to execute arbitrary code because of an invalid free in the ASN.1 codec used by the Key Distribution Center (KDC).
{ "vanir_signatures": [ { "digest": { "threshold": 0.9, "line_hashes": [ "185684756605390238103334007784352789624", "7131579695216385856922531758292910060", "96067565823201056646313325968740529266", "307324062224806380958204996069287421659" ] }, "id": "CVE-2022-44640-7e74d481", "source": "https://github.com/heimdal/heimdal/commit/78077c39e355766221383ee48c8b9be0459a82a4", "signature_version": "v1", "signature_type": "Line", "target": { "file": "include/bits.c" }, "deprecated": false } ] }