Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2006-6143

26
FAUCET Score

CVE-2006-6143 describes a critical vulnerability in the RPC library of Kerberos 5 versions 1.4 through 1.4.4 and 1.5 through 1.5.1, affecting products like the Kerberos administration daemon (kadmind) and other applications utilizing this library. The flaw involves calling an uninitialized function pointer in freed memory, which can lead to a denial of service (crash) and potentially remote code execution. With a CVSS score of 9.3, this vulnerability is highly severe, allowing unauthenticated remote attackers to exploit it with medium attack complexity, resulting in complete compromise of confidentiality, integrity, and availability. Despite its high severity and potential impact, there is no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage.

Impacted Technologies

VendorProductVersion(s)CPE
1.4CPE matchmatch criteria
cpe:2.3:a:mit:kerberos_5:1.4:*:*:*:*:*:*:*
1.4.1CPE matchmatch criteria
cpe:2.3:a:mit:kerberos_5:1.4.1:*:*:*:*:*:*:*
1.4.2CPE matchmatch criteria
cpe:2.3:a:mit:kerberos_5:1.4.2:*:*:*:*:*:*:*
1.4.3CPE matchmatch criteria
cpe:2.3:a:mit:kerberos_5:1.4.3:*:*:*:*:*:*:*
1.4.4CPE matchmatch criteria
cpe:2.3:a:mit:kerberos_5:1.4.4:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 2.0

9.3HIGH

AV:N/AC:M/Au:N/C:C/I:C/A:C

Confidentiality Impact
COMPLETE
Integrity Impact
COMPLETE
Availability Impact
COMPLETE
Access Vector
NETWORK
Access Complexity
MEDIUM
Authentication
NONE
Exploitability Score
8.6
Impact Score
10.0
CvssVersion
2.0

Exploit Intelligence

EPSS Score
7.93%
Probability of exploitation in next 30 days
EPSS Percentile
94.1%
Percentile rank of EPSS score among Peer Group
As of 2026-07-27
Model: v2026.06.15
This CVE's current EPSS score of 0.0793 is in the 73rd percentile among its peer group of 8,920 CVEs.

Social Chatter

No social media mentions found for this CVE.

The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Vendor Advisories (1)

redhatCVE-2006-6143

CVE-2006-6143

References

docs.info.apple.com / article.html
Broken Link
fedoranews.org / cms/node/2375
Broken Link
fedoranews.org / cms/node/2376
Broken Link
lists.apple.com / archives/Security-announce/2007/Apr/msg00001.html
Mailing List
lists.suse.com / archive/suse-security-announce/2007-Jan/0004.html
Broken Link
osvdb.org / 31281
Broken Link
secunia.com / advisories/23667
Broken Link
secunia.com / advisories/23696
Broken Link
secunia.com / advisories/23701
Broken Link
secunia.com / advisories/23706
Broken Link
secunia.com / advisories/23707
Broken Link
secunia.com / advisories/23772
Broken Link
secunia.com / advisories/23903
Broken Link
secunia.com / advisories/24966
Broken Link
security.gentoo.org / glsa/glsa-200701-21.xml
Third Party Advisory
securitytracker.com / id
Broken LinkThird Party AdvisoryVDB Entry
exchange.xforce.ibmcloud.com / vulnerabilities/31422
Third Party AdvisoryVDB Entry
issues.rpath.com / browse/RPL-925
Broken Link
web.mit.edu / kerberos/www/advisories/MITKRB5-SA-2006-002-rpc.txt
PatchVendor Advisory
kb.cert.org / vuls/id/481564
PatchThird Party AdvisoryUS Government Resource
mandriva.com / security/advisories
Third Party Advisory
openpkg.com / security/advisories/OpenPKG-SA-2007.006.html
Broken Link
securityfocus.com / archive/1/456406/100/0/threaded
Broken LinkThird Party AdvisoryVDB Entry
securityfocus.com / bid/21970
Broken LinkThird Party AdvisoryVDB Entry
ubuntu.com / usn/usn-408-1
Third Party Advisory
us-cert.gov / cas/techalerts/TA07-009B.html
Broken LinkPatchThird Party AdvisoryUS Government Resource
us-cert.gov / cas/techalerts/TA07-109A.html
Broken LinkThird Party AdvisoryUS Government Resource
vupen.com / english/advisories/2007/0111
Broken Link
vupen.com / english/advisories/2007/1470
Broken Link