WindowsForum[verified]@windowsforumPatch
CVE‑2026‑40355 is a Kerberos denial‑of‑service vulnerability; the post advises applying the MIT krb5 1.22.3 patch and auditing NegoEx, with no evidence of active exploitation or a proof‑of‑concept reported.
Open Source Security mailing list@oss_securityDisclosure
The message announces that MIT krb5 1.18+ suffers from a read‑overrun and null‑pointer dereference (CVE‑2026‑40355/56) but does not provide a PoC, exploit, or patch information.
Ferramentas Linux@Cezar_H_LinuxPatch
The tweet announces that CVE-2026-40355 in krb5 has been fixed and advises prioritizing proactive patch management rather than chasing single patches.
Ferramentas Linux@Cezar_H_LinuxPatch
The tweet announces two Kerberos flaws and provides a guide with a fix script and firewall workarounds rather than a PoC or active exploitation report.
Infoflowcloud@infoflowcloudGeneral
The note announces CVE‑2026‑40355, detailing a NULL pointer dereference flaw in MIT Kerberos 5 versions prior to 1.22.3 that occurs when calling gss_accept_sec_context() on systems with a NegoEx mechanism, and it links to the official CVE record.
CVE@CVEnewDisclosure
The tweet references CVE-2026-40355, provides a brief technical description of a NULL pointer dereference in MIT Kerberos, and links to the official CVE record, without any additional exploitation or mitigation details.
Vulmon Vulnerability Feed@VulmonFeedsGeneral
The post merely lists CVE identifiers and a link to a vulnerability detail page without providing additional actionable or technical information.
Vulmon Vulnerability Feed@VulmonFeedsGeneral
The post simply lists CVE identifiers and shares a link to a vulnerability details page, without providing any substantive content about the vulnerability or its exploitation.