VYPR
High severity7.5NVD Advisory· Published Aug 28, 2017· Updated May 13, 2026

CVE-2017-6594

CVE-2017-6594

Description

The transit path validation code in Heimdal before 7.3 might allow attackers to bypass the capath policy protection mechanism by leveraging failure to add the previous hop realm to the transit path of issued tickets.

Affected products

3
  • cpe:2.3:a:heimdal_project:heimdal:*:*:*:*:*:*:*:*
    Range: <=7.2.0
  • OpenSUSE/Leap2 versions
    cpe:2.3:o:opensuse:leap:42.2:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:opensuse:leap:42.2:*:*:*:*:*:*:*
    • cpe:2.3:o:opensuse:leap:42.3:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

4

News mentions

0

No linked articles in our index yet.