Unrated severityNVD Advisory· Published Feb 19, 2003· Updated Jun 16, 2026
CVE-2002-0036
CVE-2002-0036
Description
Integer signedness error in MIT Kerberos V5 ASN.1 decoder before krb5 1.2.5 allows remote attackers to cause a denial of service via a large unsigned data element length, which is later used as a negative value.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
5cpe:2.3:a:mit:kerberos_5:1.2.1:*:*:*:*:*:*:*+ 3 more
- cpe:2.3:a:mit:kerberos_5:1.2.1:*:*:*:*:*:*:*
- cpe:2.3:a:mit:kerberos_5:1.2.2:*:*:*:*:*:*:*
- cpe:2.3:a:mit:kerberos_5:1.2.3:*:*:*:*:*:*:*
- cpe:2.3:a:mit:kerberos_5:1.2.4:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
10- web.mit.edu/kerberos/www/advisories/MITKRB5-SA-2003-001-multiple.txtnvdPatchVendor Advisory
- www.kb.cert.org/vuls/id/587579nvdPatchThird Party AdvisoryUS Government Resource
- distro.conectiva.com.br/atualizacoes/nvd
- www.mandrakesoft.com/security/advisoriesnvd
- www.osvdb.org/4896nvd
- www.redhat.com/support/errata/RHSA-2003-051.htmlnvd
- www.redhat.com/support/errata/RHSA-2003-052.htmlnvd
- www.redhat.com/support/errata/RHSA-2003-168.htmlnvd
- www.securityfocus.com/bid/6713nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/11190nvd
News mentions
0No linked articles in our index yet.