Heimdal is an implementation of ASN.1/DER, PKIX, and Kerberos. Versions prior to 7.7.1 are vulnerable to a denial of service vulnerability in Heimdal's PKI certificate validation library, affecting the KDC (via PKINIT) and kinit (via PKINIT), as well as any third-party applications using Heimdal's libhx509. Users should upgrade to Heimdal 7.7.1 or 7.8. There are no known workarounds for this issue.
{ "cwe_ids": [ "CWE-193" ] }
[ { "source": "https://github.com/heimdal/heimdal/commit/78077c39e355766221383ee48c8b9be0459a82a4", "target": { "file": "include/bits.c" }, "id": "CVE-2022-41916-7e74d481", "deprecated": false, "signature_version": "v1", "signature_type": "Line", "digest": { "line_hashes": [ "185684756605390238103334007784352789624", "7131579695216385856922531758292910060", "96067565823201056646313325968740529266", "307324062224806380958204996069287421659" ], "threshold": 0.9 } } ]