Lucene search

K
osvGoogleOSV:CVE-2024-37371
HistoryJun 28, 2024 - 11:15 p.m.

CVE-2024-37371

2024-06-2823:15:11
Google
osv.dev
2
mit kerberos 5
invalid memory reads
vulnerability
gss message token handling
software security
cve-2024-37371

AI Score

6.6

Confidence

Low

In MIT Kerberos 5 (aka krb5) before 1.21.3, an attacker can cause invalid memory reads during GSS message token handling by sending message tokens with invalid length fields.