Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2022-42898

30
FAUCET Score

CVE-2022-42898 is a critical integer overflow vulnerability in the PAC parsing component of MIT Kerberos 5 and Heimdal, affecting versions before 1.19.4/1.20.1 and 7.7.1 respectively, as well as related Samba products. This flaw can lead to remote code execution on 32-bit platforms due to a resultant heap-based buffer overflow, and denial of service on other platforms. With a CVSS score of 8.8 (HIGH), it is easily exploitable over the network with low privileges and no user interaction, potentially granting full confidentiality, integrity, and availability impact. While no public exploit code (Metasploit, Nuclei, ExploitDB) is currently available and it's not listed in CISA's KEV catalog, the vulnerability has garnered some community discussion and media coverage, indicating awareness within the cybersecurity community.

Impacted Technologies

VendorProductVersion(s)CPE
>= 1.8, < 1.19.4CPE matchmatch criteria
cpe:2.3:a:mit:kerberos_5:*:*:*:*:*:*:*:*
1.20CPE matchmatch criteria
cpe:2.3:a:mit:kerberos_5:1.20:-:*:*:*:*:*:*
1.20CPE matchmatch criteria
cpe:2.3:a:mit:kerberos_5:1.20:beta1:*:*:*:*:*:*
< 7.7.1CPE matchmatch criteria
cpe:2.3:a:heimdal_project:heimdal:*:*:*:*:*:*:*:*
< 4.15.12CPE matchmatch criteria
cpe:2.3:a:samba:samba:*:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.1

8.8HIGH

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
Exploitability Score
2.8
Impact Score
5.9
CvssVersion
3.1

Exploit Intelligence

EPSS Score
6.42%
Probability of exploitation in next 30 days
EPSS Percentile
93.0%
Percentile rank of EPSS score among Peer Group
As of 2026-07-25
Model: v2026.06.15
This CVE's current EPSS score of 0.0642 is in the 92nd percentile among its peer group of 17,822 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.3 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.

Media Mentions

The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (34)

githubpatch availablevia llm_extracted
View patch
github_advisorypatch availablevia nvd_reference
View patch
microsoftpatch availablevia msrc
Product: 18503-16820Fixed in: 7.7.1-1
microsoftpatch availablevia msrc
Product: 18504-16823Fixed in: 1.19.4-1
microsoftpatch availablevia msrc
Product: 16863-16823Fixed in: 4.12.5-6
microsoftpatch availablevia msrc
Product: 16864-17084Fixed in: 4.18.3-1
microsoftpatch availablevia msrc
Product: CBL Mariner 2.0 ARMFixed in: 1.19.4-1
microsoftpatch availablevia msrc
Product: 18502-16820Fixed in: 1.18.4-3
microsoftpatch availablevia msrc
Product: cm1 krb5 1.18.4-3 on CBL Mariner 1.0Fixed in: 1.18.4-3
microsoftpatch availablevia msrc
Product: cm1 heimdal 7.7.1-1 on CBL Mariner 1.0Fixed in: 7.7.1-1
microsoftpatch availablevia msrc
Product: cbl2 krb5 1.19.4-1 on CBL Mariner 2.0Fixed in: 1.19.4-1
microsoftpatch availablevia msrc
Product: cbl2 samba 4.12.5-6 on CBL Mariner 2.0Fixed in: 4.12.5-6
microsoftpatch availablevia msrc
Product: azl3 samba 4.18.3-1 on Azure Linux 3.0Fixed in: 4.18.3-1
microsoftpatch availablevia msrc
Product: Azure Linux 3.0 x64Fixed in: 4.18.3-1
microsoftpatch availablevia msrc
Product: Azure Linux 3.0 ARMFixed in: 4.18.3-1
microsoftpatch availablevia msrc
Product: CBL Mariner 1.0 x64Fixed in: 7.7.1-1
microsoftpatch availablevia msrc
Product: CBL Mariner 1.0 x64Fixed in: 1.18.4-3
microsoftpatch availablevia msrc
Product: CBL Mariner 1.0 ARMFixed in: 7.7.1-1
microsoftpatch availablevia msrc
Product: CBL Mariner 1.0 ARMFixed in: 1.18.4-3
microsoftpatch availablevia msrc
Product: CBL Mariner 2.0 x64Fixed in: 1.19.4-1
nodejspatch availablevia llm_extracted
Fixed in: 5.4.3
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 6 Extended Lifecycle SupportFixed in: krb5-0:1.10.3-66.el6_10
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 8Fixed in: krb5-0:1.18.2-25.el8_8
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 8Fixed in: krb5-0:1.18.2-22.el8_7
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 8.1 Update Services for SAP SolutionsFixed in: krb5-0:1.17-10.el8_1
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 8.2 Advanced Update SupportFixed in: krb5-0:1.17-19.el8_2
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 8.2 Telecommunications Update ServiceFixed in: krb5-0:1.17-19.el8_2
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 7Fixed in: krb5-0:1.15.1-55.el7_9
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 8.4 Extended Update SupportFixed in: krb5-0:1.18.2-9.el8_4
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 8.6 Extended Update SupportFixed in: krb5-0:1.18.2-15.el8_6
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 9Fixed in: krb5-0:1.19.1-24.el9_1
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 9.0 Extended Update SupportFixed in: krb5-0:1.19.1-16.el9_0
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Virtualization 4 for Red Hat Enterprise Linux 8Fixed in: redhat-virtualization-host-0:4.5.3-202212070734_8.6
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 8.2 Update Services for SAP SolutionsFixed in: krb5-0:1.17-19.el8_2
View patch

Vendor Advisories (5)

nodejsllm-nodejs-91bc25f14cc604adCRITICAL

Third-Party Package Updates in Splunk User Behavior Analytics (UBA) - July 2025

Jul 30, 2025
microsoft2024-Oct/CVE-2022-42898

CVE-2022-42898

Oct 8, 2024
githubllm-github-a15388fff83176dcMEDIUM

AS-2022-016: Samba

Dec 27, 2022
microsoft2022-Dec/CVE-2022-42898Important

PAC parsing in MIT Kerberos 5 (aka krb5) before 1.19.4 and 1.20.x before 1.20.1 has integer overflows that may lead to remote code execution (in KDC kadmind or a GSS or Kerberos application server) on 32-bit platforms (which have a resultant heap-based buffer overflow) and cause a denial of service on other platforms. This occurs in krb5_pac_parse in lib/krb5/krb/pac.c. Heimdal before 7.7.1 has "a similar bug."

Dec 13, 2022
redhatCVE-2022-42898Important

krb5: integer overflow vulnerabilities in PAC parsing

Nov 15, 2022

References

bugzilla.samba.org / show_bug.cgi
ExploitIssue TrackingPatchThird Party Advisory
github.com / heimdal/heimdal/security/advisories/GHSA-64mq-fvfj-5x3c
Third Party Advisory
github.com / krb5/krb5/commit/ea92d2f0fcceb54a70910fa32e9a0d7a5afc3583
PatchThird Party Advisory
security.gentoo.org / glsa/202309-06
security.gentoo.org / glsa/202310-06
security.netapp.com / advisory/ntap-20230216-0008
security.netapp.com / advisory/ntap-20230223-0001
web.mit.edu / kerberos/advisories
Vendor Advisory
web.mit.edu / kerberos/krb5-1.19
Release NotesVendor Advisory
web.mit.edu / kerberos/krb5-1.20/README-1.20.1.txt
Vendor Advisory
samba.org / samba/security/CVE-2022-42898.html
Third Party Advisory