Unrated severityNVD Advisory· Published Dec 25, 2022· Updated Apr 15, 2025
CVE-2022-44640
CVE-2022-44640
Description
Heimdal before 7.7.1 allows remote attackers to execute arbitrary code because of an invalid free in the ASN.1 codec used by the Key Distribution Center (KDC).
Affected products
6- Heimdal/Heimdaldescription
- osv-coords5 versionspkg:rpm/opensuse/libheimdal&distro=openSUSE%20Leap%2015.3pkg:rpm/opensuse/libheimdal&distro=openSUSE%20Leap%2015.4pkg:rpm/opensuse/samba&distro=openSUSE%20Tumbleweedpkg:rpm/suse/libheimdal&distro=SUSE%20Package%20Hub%2015%20SP3pkg:rpm/suse/libheimdal&distro=SUSE%20Package%20Hub%2015%20SP4
< 7.8.0-bp153.2.4.1+ 4 more
- (no CPE)range: < 7.8.0-bp153.2.4.1
- (no CPE)range: < 7.8.0-bp154.2.4.1
- (no CPE)range: < 4.17.4+git.300.305b22bfce-1.1
- (no CPE)range: < 7.8.0-bp153.2.4.1
- (no CPE)range: < 7.8.0-bp154.2.4.1
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3News mentions
0No linked articles in our index yet.