Vulnerability Database
Blog
FAQ
Docs
arrow_forward
search
CVE-2024-26462
See a problem?
Please try reporting it
to the source
first.
Source
https://nvd.nist.gov/vuln/detail/CVE-2024-26462
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-26462.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2024-26462
Downstream
BELL-CVE-2024-26462
DEBIAN-CVE-2024-26462
ECHO-f677-6a69-33f8
RHSA-2024:9331
SUSE-SU-2024:0997-1
UBUNTU-CVE-2024-26462
USN-7314-1
openSUSE-SU-2024:13921-1
Related
ALSA-2024:9331
SUSE-SU-2024:0997-1
openSUSE-SU-2024:13921-1
Published
2024-02-29T01:44:18Z
Modified
2025-09-19T14:58:33.959497Z
Severity
5.5 (Medium)
CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
CVSS Calculator
Summary
[none]
Details
Kerberos 5 (aka krb5) 1.21.2 contains a memory leak vulnerability in /krb5/src/kdc/ndr.c.
References
https://security.netapp.com/advisory/ntap-20240415-0012/
https://github.com/LuMingYinDetect/krb5_defects/blob/main/krb5_detect_3.md
Affected packages
Git
/
github.com/krb5/krb5
Affected ranges
Type
GIT
Repo
https://github.com/krb5/krb5
Events
Introduced
0
Unknown introduced commit / All previous commits are affected
Last affected
835f6e3d819beb7ee1046f01afb284b54ad54c5f
Affected versions
krb5-1.*
krb5-1.21-beta1
krb5-1.21-final
krb5-1.21.1-final
krb5-1.21.2-final
CVE-2024-26462 - OSV