CVE-2017-11462: Fedoraproject Fedora

Critical severity, CVSS 9.8. EPSS: 5.5% chance of exploitation in the next 30 days.

Double free vulnerability in MIT Kerberos 5 (aka krb5) allows attackers to have unspecified impact via vectors involving automatic deletion of security contexts on error.

Affected products

  • Fedoraproject Fedora: version 25 only; version 26 only
  • Mit Kerberos 5: version 1.14 only; version 1.14.1 only; version 1.14.2 only; version 1.14.3 only; version 1.14.4 only; version 1.14.5 only; …

Published 2017-09-13. Last modified 2026-06-17.