Heimdal before 7.7.1 allows remote attackers to execute arbitrary code because of an invalid free in the ASN.1 codec used by the Key Distribution Center (KDC).
The product calls free() twice on the same memory address.
Link | Tags |
---|---|
https://github.com/heimdal/heimdal/security/advisories/GHSA-88pm-hfmq-7vv4 | third party advisory |
https://security.netapp.com/advisory/ntap-20230216-0008/ | third party advisory |
https://security.gentoo.org/glsa/202310-06 | vendor advisory |