CVE-2022-42898

Source
https://cve.org/CVERecord?id=CVE-2022-42898
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-42898.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2022-42898
Aliases
  • GHSA-64mq-fvfj-5x3c
Downstream
ALPINE (1)
AZL (3)
BELL (1)
CLSA (9)
DEBIAN (1)
ECHO (1)
JLSEC (1)
MGASA (3)
OESA (1)
openSUSE (5)
RHEA (1)
RHSA (10)
RLSA (2)
SUSE (9)
UBUNTU (1)
Related
Published
2022-12-25T00:00:00Z
Modified
2026-08-12T13:32:15Z
Severity
  • 8.8 (High) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
[none]
Details

PAC parsing in MIT Kerberos 5 (aka krb5) before 1.19.4 and 1.20.x before 1.20.1 has integer overflows that may lead to remote code execution (in KDC, kadmind, or a GSS or Kerberos application server) on 32-bit platforms (which have a resultant heap-based buffer overflow), and cause a denial of service on other platforms. This occurs in krb5_pac_parse in lib/krb5/krb/pac.c. Heimdal before 7.7.1 has "a similar bug."

Database specific
{
    "cna_assigner":  "mitre",
    "osv_generated_from":  "https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/42xxx/CVE-2022-42898.json"
}
References

Affected packages

Git / github.com/heimdal/heimdal

Affected ranges

Type
GIT
Repo
https://github.com/heimdal/heimdal
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Fixed
Database specific
Show details
{
    "cpe":  "cpe:2.3:a:heimdal_project:heimdal:*:*:*:*:*:*:*:*",
    "extracted_events":  [
        {
            "introduced":  "0"
        },
        {
            "fixed":  "7.7.1"
        }
    ],
    "source":  [
        "DESCRIPTION",
        "CPE_RANGE"
    ]
}
Type
GIT
Repo
https://github.com/krb5/krb5
Events
Database specific
Show details
{
    "cpe":  [
        "cpe:2.3:a:mit:kerberos_5:*:*:*:*:*:*:*:*",
        "cpe:2.3:a:mit:kerberos_5:1.20:-:*:*:*:*:*:*",
        "cpe:2.3:a:mit:kerberos_5:1.20:beta1:*:*:*:*:*:*"
    ],
    "extracted_events":  [
        {
            "introduced":  "1.8"
        },
        {
            "fixed":  "1.19.4"
        },
        {
            "introduced":  "1.20-NA"
        },
        {
            "last_affected":  "1.20-NA"
        },
        {
            "introduced":  "1.20-beta1"
        },
        {
            "last_affected":  "1.20-beta1"
        }
    ],
    "source":  [
        "CPE_RANGE",
        "CPE_STRING",
        "REFERENCES"
    ]
}
Type
GIT
Repo
https://github.com/samba-team/samba
Events
Database specific
Show details
{
    "cpe":  "cpe:2.3:a:samba:samba:*:*:*:*:*:*:*:*",
    "extracted_events":  [
        {
            "introduced":  "0"
        },
        {
            "fixed":  "4.15.12"
        },
        {
            "introduced":  "4.16.0"
        },
        {
            "fixed":  "4.16.7"
        },
        {
            "introduced":  "4.17.0"
        },
        {
            "fixed":  "4.17.3"
        }
    ],
    "source":  "CPE_RANGE"
}

Affected versions

1.*
1.20-NA
1.20-beta1
Other
git2svn-syncpoint-master
switch-from-svn-to-git
heimdal-1.*
heimdal-1.3.0pre1
heimdal-1.3.0pre10
heimdal-1.3.0pre11
heimdal-1.3.0pre3
heimdal-1.3.0pre4
heimdal-1.3.0pre5
heimdal-1.3.0pre6
heimdal-1.3.0pre7
heimdal-1.3.0pre8
heimdal-1.3.0pre9
heimdal-1.3.0rc1
heimdal-1.5pre1
heimdal-1.5pre2
heimdal-7.*
heimdal-7.0.1
heimdal-7.0.2
heimdal-7.0.3
heimdal-7.1.0
heimdal-7.1rc1
heimdal-7.2.0
heimdal-7.3.0
heimdal-7.4.0
heimdal-7.5.0
heimdal-7.6.0
heimdal-7.7.0
ldb-1.*
ldb-1.1.0
ldb-1.1.10
ldb-1.1.11
ldb-1.1.12
ldb-1.1.13
ldb-1.1.14
ldb-1.1.15
ldb-1.1.16
ldb-1.1.17
ldb-1.1.18
ldb-1.1.19
ldb-1.1.2
ldb-1.1.20
ldb-1.1.21
ldb-1.1.22
ldb-1.1.23
ldb-1.1.25
ldb-1.1.26
ldb-1.1.27
ldb-1.1.28
ldb-1.1.29
ldb-1.1.3
ldb-1.1.30
ldb-1.1.31
ldb-1.1.4
ldb-1.1.5
ldb-1.1.6
ldb-1.1.8
ldb-1.1.9
ldb-1.2.0
ldb-1.2.1
ldb-1.2.2
ldb-1.3.0
ldb-1.3.1
ldb-1.3.2
ldb-1.4.0
ldb-1.4.1
ldb-1.5.0
ldb-1.5.1
ldb-1.5.2
ldb-1.6.1
ldb-1.6.2
ldb-1.6.3
ldb-2.*
ldb-2.0.5
ldb-2.1.0
ldb-2.1.1
ldb-2.2.0
ldb-2.4.0
ldb-2.4.1
ldb-2.4.2
ldb-2.4.3
ldb-2.5.1
ldb-2.5.2
samba-4.*
samba-4.0.0alpha10
samba-4.0.0alpha17
samba-4.0.0alpha18
samba-4.0.0alpha19
samba-4.0.0alpha20
samba-4.0.0alpha21
samba-4.0.0alpha6
samba-4.0.0alpha7
samba-4.0.0alpha8
samba-4.0.0alpha9
samba-4.0.0beta1
samba-4.0.0beta2
samba-4.0.0beta3
samba-4.0.0beta4
samba-4.0.0beta5
samba-4.0.0beta6
samba-4.0.0beta7
samba-4.0.0beta8
samba-4.0.0rc1
samba-4.10.0rc1
samba-4.11.0rc1
samba-4.12.0rc1
samba-4.13.0rc1
samba-4.14.0rc1
samba-4.15.0
samba-4.15.0rc1
samba-4.15.0rc2
samba-4.15.0rc3
samba-4.15.0rc4
samba-4.15.0rc5
samba-4.15.0rc6
samba-4.15.0rc7
samba-4.15.1
samba-4.15.10
samba-4.15.11
samba-4.15.2
samba-4.15.3
samba-4.15.4
samba-4.15.6
samba-4.15.7
samba-4.15.8
samba-4.16.0
samba-4.16.1
samba-4.16.2
samba-4.16.3
samba-4.16.4
samba-4.16.5
samba-4.16.6
samba-4.17.0
samba-4.17.1
samba-4.17.2
samba-4.2.0rc1
samba-4.3.0rc1
samba-4.4.0rc1
samba-4.5.0rc1
samba-4.6.0rc1
samba-4.7.0rc1
samba-4.8.0rc1
samba-4.9.0rc1
talloc-1.*
talloc-1.3.1
talloc-2.*
talloc-2.0.0
talloc-2.0.7
talloc-2.0.8
talloc-2.1.0
talloc-2.1.1
talloc-2.1.10
talloc-2.1.11
talloc-2.1.12
talloc-2.1.13
talloc-2.1.14
talloc-2.1.15
talloc-2.1.16
talloc-2.1.2
talloc-2.1.3
talloc-2.1.4
talloc-2.1.5
talloc-2.1.6
talloc-2.1.7
talloc-2.1.8
talloc-2.1.9
talloc-2.2.0
talloc-2.3.0
talloc-2.3.1
talloc-2.3.2
talloc-2.3.3
tdb-1.*
tdb-1.1.5
tdb-1.2.0
tdb-1.2.1
tdb-1.2.10
tdb-1.2.11
tdb-1.2.12
tdb-1.2.13
tdb-1.3.0
tdb-1.3.1
tdb-1.3.10
tdb-1.3.11
tdb-1.3.12
tdb-1.3.13
tdb-1.3.14
tdb-1.3.15
tdb-1.3.16
tdb-1.3.17
tdb-1.3.18
tdb-1.3.2
tdb-1.3.3
tdb-1.3.4
tdb-1.3.5
tdb-1.3.6
tdb-1.3.7
tdb-1.3.8
tdb-1.3.9
tdb-1.4.0
tdb-1.4.1
tdb-1.4.2
tdb-1.4.3
tdb-1.4.4
tevent-0.*
tevent-0.10.0
tevent-0.10.1
tevent-0.10.2
tevent-0.11.0
tevent-0.9.11
tevent-0.9.12
tevent-0.9.13
tevent-0.9.14
tevent-0.9.15
tevent-0.9.16
tevent-0.9.17
tevent-0.9.18
tevent-0.9.19
tevent-0.9.20
tevent-0.9.21
tevent-0.9.22
tevent-0.9.23
tevent-0.9.24
tevent-0.9.25
tevent-0.9.26
tevent-0.9.27
tevent-0.9.28
tevent-0.9.29
tevent-0.9.30
tevent-0.9.31
tevent-0.9.32
tevent-0.9.33
tevent-0.9.34
tevent-0.9.35
tevent-0.9.36
tevent-0.9.37
tevent-0.9.38
tevent-0.9.39
tevent-0.9.8
upstream-1.*
upstream-1.4.0+git20101228.dfsg.1
upstream-1.4.0+git20110220.dfsg.1

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-42898.json"
vanir_signatures
[
    {
        "deprecated":  false,
        "digest":  {
            "function_hash":  "313212553996591129015720005043578260600",
            "length":  8101
        },
        "id":  "CVE-2022-42898-190ec2e6",
        "signature_type":  "Function",
        "signature_version":  "v1",
        "source":  "https://github.com/krb5/krb5/commit/ea92d2f0fcceb54a70910fa32e9a0d7a5afc3583",
        "target":  {
            "file":  "src/lib/krb5/krb/t_pac.c",
            "function":  "main"
        }
    },
    {
        "deprecated":  false,
        "digest":  {
            "line_hashes":  [
                "47415333018243679864646462913306600925",
                "113522990652075189899911575550870172940",
                "332636347402384035849490568060121070816",
                "24974974711904770793287531419649756654",
                "34036481326062071104848288339706052122",
                "335906234459261617987938532306053980177",
                "154732096699152609497200721234291993685",
                "185833400480707633037073703290605393751",
                "114563188656008062785041387091874740449",
                "258667828208263873189321892773311252565",
                "259921342012297268374246674019195512093"
            ],
            "threshold":  0.9
        },
        "id":  "CVE-2022-42898-1a970be7",
        "signature_type":  "Line",
        "signature_version":  "v1",
        "source":  "https://github.com/krb5/krb5/commit/ea92d2f0fcceb54a70910fa32e9a0d7a5afc3583",
        "target":  {
            "file":  "src/lib/krb5/krb/pac.c"
        }
    },
    {
        "deprecated":  false,
        "digest":  {
            "line_hashes":  [
                "203158983188195784883759796692003894593",
                "117811727424344157626574231154516038039",
                "275952240584579959483060309342236230792",
                "87998220430651193888088689122468582815",
                "198618692815112439499828060074676714596",
                "86990030903086973170313960916416642456"
            ],
            "threshold":  0.9
        },
        "id":  "CVE-2022-42898-705fc6fd",
        "signature_type":  "Line",
        "signature_version":  "v1",
        "source":  "https://github.com/krb5/krb5/commit/ea92d2f0fcceb54a70910fa32e9a0d7a5afc3583",
        "target":  {
            "file":  "src/lib/krb5/krb/t_pac.c"
        }
    },
    {
        "deprecated":  false,
        "digest":  {
            "line_hashes":  [
                "185684756605390238103334007784352789624",
                "7131579695216385856922531758292910060",
                "96067565823201056646313325968740529266",
                "307324062224806380958204996069287421659"
            ],
            "threshold":  0.9
        },
        "id":  "CVE-2022-42898-7e74d481",
        "signature_type":  "Line",
        "signature_version":  "v1",
        "source":  "https://github.com/heimdal/heimdal/commit/78077c39e355766221383ee48c8b9be0459a82a4",
        "target":  {
            "file":  "include/bits.c"
        }
    },
    {
        "deprecated":  false,
        "digest":  {
            "function_hash":  "141063196662638433845114500023813850879",
            "length":  1490
        },
        "id":  "CVE-2022-42898-d3714872",
        "signature_type":  "Function",
        "signature_version":  "v1",
        "source":  "https://github.com/krb5/krb5/commit/ea92d2f0fcceb54a70910fa32e9a0d7a5afc3583",
        "target":  {
            "file":  "src/lib/krb5/krb/pac.c",
            "function":  "krb5_pac_parse"
        }
    }
]
vanir_signatures_modified
"2026-08-12T13:32:15Z"