It is possible to bypass the Kerberos pre-authentication check in Apache Kerby by sending a PA-DATA with an unrecognized or unsupported type. Users are recommended to upgrade to version 2.1.2, which fixes this issue.
References
Configurations
No configuration.
History
No history.
Information
Published : 2026-06-26 13:16
Updated : 2026-08-03 13:18
NVD link : CVE-2026-57915
Mitre link : CVE-2026-57915
CVE.ORG link : CVE-2026-57915
JSON object : View
Products Affected
No product.
