VYPR

rpm package

suse/libheimdal&distro=SUSE Package Hub 15

pkg:rpm/suse/libheimdal&distro=SUSE%20Package%20Hub%2015

Vulnerabilities (2)

  • CVE-2018-16860Jul 31, 2019
    affected < 7.7.0-bp150.2.3.1fixed 7.7.0-bp150.2.3.1

    A flaw was found in samba's Heimdal KDC implementation, versions 4.8.x up to, excluding 4.8.12, 4.9.x up to, excluding 4.9.8 and 4.10.x up to, excluding 4.10.3, when used in AD DC mode. A man in the middle attacker could use this flaw to intercept the request to the KDC and repla

  • CVE-2019-12098HigMay 15, 2019
    affected < 7.7.0-bp150.2.3.1fixed 7.7.0-bp150.2.3.1

    In the client side of Heimdal before 7.6.0, failure to verify anonymous PKINIT PA-PKINIT-KX key exchange permits a man-in-the-middle attack. This issue is in krb5_init_creds_step in lib/krb5/init_creds_pw.c.