Critical severity9.8NVD Advisory· Published Jul 18, 2005· Updated Apr 16, 2026
CVE-2005-1689
CVE-2005-1689
Description
Double free vulnerability in the krb5_recvauth function in MIT Kerberos 5 (krb5) 1.4.1 and earlier allows remote attackers to execute arbitrary code via certain error conditions.
Affected products
5cpe:2.3:o:debian:debian_linux:3.0:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:debian:debian_linux:3.0:*:*:*:*:*:*:*
- cpe:2.3:o:debian:debian_linux:3.1:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
27- marc.infonvdMailing ListPatch
- web.mit.edu/kerberos/advisories/MITKRB5-SA-2005-003-recvauth.txtnvdPatchVendor Advisory
- www.debian.org/security/2005/dsa-757nvdMailing ListPatch
- www.kb.cert.org/vuls/id/623332nvdPatchThird Party AdvisoryUS Government Resource
- secunia.com/advisories/16041nvdBroken LinkVendor Advisory
- secunia.com/advisories/17135nvdBroken LinkVendor Advisory
- secunia.com/advisories/17899nvdBroken LinkVendor Advisory
- secunia.com/advisories/22090nvdBroken LinkVendor Advisory
- securitytracker.com/idnvdBroken LinkThird Party AdvisoryVDB Entry
- www.gentoo.org/security/en/glsa/glsa-200507-11.xmlnvdThird Party Advisory
- www.securityfocus.com/archive/1/446940/100/0/threadednvdBroken LinkThird Party AdvisoryVDB Entry
- www.securityfocus.com/bid/14239nvdBroken LinkThird Party AdvisoryVDB Entry
- exchange.xforce.ibmcloud.com/vulnerabilities/21055nvdThird Party AdvisoryVDB Entry
- patches.sgi.com/support/free/security/advisories/20050703-01-U.ascnvdBroken Link
- distro.conectiva.com.br/atualizacoes/nvdBroken Link
- lists.apple.com/archives/security-announce/2005//Aug/msg00001.htmlnvdMailing List
- lists.apple.com/archives/security-announce/2005/Aug/msg00000.htmlnvdMailing List
- sunsolve.sun.com/search/document.donvdBroken Link
- www.novell.com/linux/security/advisories/2005_17_sr.htmlnvdBroken Link
- www.redhat.com/support/errata/RHSA-2005-562.htmlnvdBroken Link
- www.redhat.com/support/errata/RHSA-2005-567.htmlnvdBroken Link
- www.trustix.org/errata/2005/0036nvdBroken Link
- www.turbolinux.com/security/2005/TLSA-2005-78.txtnvdBroken Link
- www.vupen.com/english/advisories/2005/1066nvdBroken Link
- www.vupen.com/english/advisories/2006/3776nvdBroken Link
- oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9819nvdBroken Link
- usn.ubuntu.com/224-1/nvdBroken Link
News mentions
0No linked articles in our index yet.