High severity7.5NVD Advisory· Published Dec 26, 2022· Updated Jun 17, 2026
CVE-2021-44758
CVE-2021-44758
Description
Heimdal before 7.7.1 allows attackers to cause a NULL pointer dereference in a SPNEGO acceptor via a preferred_mech_type of GSS_C_NO_OID and a nonzero initial_response value to send_accept.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
7- osv-coords4 versionspkg:rpm/opensuse/libheimdal&distro=openSUSE%20Leap%2015.3pkg:rpm/opensuse/libheimdal&distro=openSUSE%20Leap%2015.4pkg:rpm/suse/libheimdal&distro=SUSE%20Package%20Hub%2015%20SP3pkg:rpm/suse/libheimdal&distro=SUSE%20Package%20Hub%2015%20SP4
< 7.8.0-bp153.2.4.1+ 3 more
- (no CPE)range: < 7.8.0-bp153.2.4.1
- (no CPE)range: < 7.8.0-bp154.2.4.1
- (no CPE)range: < 7.8.0-bp153.2.4.1
- (no CPE)range: < 7.8.0-bp154.2.4.1
Patches
Vulnerability mechanics
References
3- github.com/heimdal/heimdal/commit/f9ec7002cdd526ae84fbacbf153162e118f22580nvdPatchThird Party Advisory
- github.com/heimdal/heimdal/security/advisories/GHSA-69h9-669w-88xvnvdThird Party Advisory
- security.gentoo.org/glsa/202310-06nvd
News mentions
0No linked articles in our index yet.