NA

CVE-2022-2469

Published: 19/07/2022 Updated: 26/10/2022
CVSS v3 Base Score: 8.1 | Impact Score: 5.2 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

GNU SASL libgsasl server-side read-out-of-bounds with malicious authenticated GSS-API client

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

gnu gnu sasl

debian debian linux 10.0

debian debian linux 11.0

Vendor Advisories

Simon Josefsson discovered an out-of-bounds memory read in GNU SASL, an implementation of the Simple Authentication and Security Layer framework, which could result in denial of service For the oldstable distribution (buster), this problem has been fixed in version 180-8+deb10u1 For the stable distribution (bullseye), this problem has been fixe ...
GNU SASL libgsasl server-side read-out-of-bounds with malicious authenticated GSS-API client ...