VYPR
High severity7.5NVD Advisory· Published Sep 26, 2019· Updated Jun 17, 2026

CVE-2019-14844

CVE-2019-14844

Description

A flaw was found in, Fedora versions of krb5 from 1.16.1 to, including 1.17.x, in the way a Kerberos client could crash the KDC by sending one of the RFC 4556 "enctypes". A remote unauthenticated user could use this flaw to crash the KDC.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

6
  • cpe:2.3:a:mit:kerberos_5:*:*:*:*:*:*:*:*
    Range: >=1.16.1,<=1.17.1
  • cpe:2.3:o:fedoraproject:fedora:29:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:o:fedoraproject:fedora:29:*:*:*:*:*:*:*
    • cpe:2.3:o:fedoraproject:fedora:30:*:*:*:*:*:*:*
    • cpe:2.3:o:fedoraproject:fedora:31:*:*:*:*:*:*:*
  • Fedorahosted/krb5llm-create
    Range: 1.16.1 - 1.17.x
  • MIT/krb5v5
    Range: Fedora versions of krb5 from 1.16.1 to, including 1.17.x

Patches

Vulnerability mechanics

References

6

News mentions

0

No linked articles in our index yet.