Oval Definition:oval:org.mitre.oval:def:13697
Revision Date:2014-06-30Version:20
Title:USN-1062-1 -- krb5 vulnerabilities
Description:Keiichi Mori discovered that the MIT krb5 KDC database propagation daemon is vulnerable to a denial of service attack due to improper logic when a worker child process exited because of invalid network input. This could only occur when kpropd is running in standalone mode; kpropd was not affected when running in incremental propagation mode or as an inetd server. This issue only affects Ubuntu 9.10, Ubuntu 10.04 LTS, and Ubuntu 10.10. Kevin Longfellow and others discovered that the MIT krb5 Key Distribution Center daemon is vulnerable to denial of service attacks when using an LDAP back end due to improper handling of network input
Family:unixClass:patch
Status:ACCEPTEDReference(s):CVE-2010-4022
CVE-2011-0281
CVE-2011-0282
USN-1062-1
USN-1062-1
Platform(s):Ubuntu 10.04
Ubuntu 10.10
Ubuntu 8.04
Ubuntu 9.10
Product(s):krb5
Definition Synopsis
  • Release section
  • Ubuntu 8.04 is installed
  • AND Architecture section
  • Architecture independent section
  • Installed architecture is all
  • AND krb5-doc DPKG is earlier than 1.6.dfsg.3~beta1-2ubuntu1.8
  • OR Architecture depended section
  • Supported architectures section
  • Installed architecture is amd64
  • OR Installed architecture is i386
  • OR Installed architecture is powerpc
  • OR Installed architecture is sparc
  • OR Installed architecture is lpia
  • AND Packages section
  • krb5-rsh-server DPKG is earlier than 1.6.dfsg.3~beta1-2ubuntu1.8
  • OR krb5-telnetd DPKG is earlier than 1.6.dfsg.3~beta1-2ubuntu1.8
  • OR libkrb53 DPKG is earlier than 1.6.dfsg.3~beta1-2ubuntu1.8
  • OR libkrb5-dev DPKG is earlier than 1.6.dfsg.3~beta1-2ubuntu1.8
  • OR krb5-ftpd DPKG is earlier than 1.6.dfsg.3~beta1-2ubuntu1.8
  • OR krb5-pkinit DPKG is earlier than 1.6.dfsg.3~beta1-2ubuntu1.8
  • OR krb5-admin-server DPKG is earlier than 1.6.dfsg.3~beta1-2ubuntu1.8
  • OR libkadm55 DPKG is earlier than 1.6.dfsg.3~beta1-2ubuntu1.8
  • OR libkrb5-dbg DPKG is earlier than 1.6.dfsg.3~beta1-2ubuntu1.8
  • OR krb5-user DPKG is earlier than 1.6.dfsg.3~beta1-2ubuntu1.8
  • OR krb5-clients DPKG is earlier than 1.6.dfsg.3~beta1-2ubuntu1.8
  • OR krb5-kdc DPKG is earlier than 1.6.dfsg.3~beta1-2ubuntu1.8
  • OR Release section
  • Ubuntu 10.10 is installed
  • AND Architecture section
  • Architecture independent section
  • Installed architecture is all
  • AND krb5-doc DPKG is earlier than 1.8.1+dfsg-5ubuntu0.4
  • OR Architecture depended section
  • Supported architectures section
  • Installed architecture is powerpc
  • OR Installed architecture is armel
  • OR Installed architecture is amd64
  • OR Installed architecture is i386
  • AND Packages section
  • libgssrpc4 DPKG is earlier than 1.8.1+dfsg-5ubuntu0.4
  • OR krb5-multidev DPKG is earlier than 1.8.1+dfsg-5ubuntu0.4
  • OR libk5crypto3 DPKG is earlier than 1.8.1+dfsg-5ubuntu0.4
  • OR krb5-kdc-ldap DPKG is earlier than 1.8.1+dfsg-5ubuntu0.4
  • OR libkrb5-dev DPKG is earlier than 1.8.1+dfsg-5ubuntu0.4
  • OR libkadm5srv-mit7 DPKG is earlier than 1.8.1+dfsg-5ubuntu0.4
  • OR libkadm5clnt-mit7 DPKG is earlier than 1.8.1+dfsg-5ubuntu0.4
  • OR krb5-pkinit DPKG is earlier than 1.8.1+dfsg-5ubuntu0.4
  • OR libkrb5-3 DPKG is earlier than 1.8.1+dfsg-5ubuntu0.4
  • OR libkdb5-4 DPKG is earlier than 1.8.1+dfsg-5ubuntu0.4
  • OR libkrb5-dbg DPKG is earlier than 1.8.1+dfsg-5ubuntu0.4
  • OR krb5-user DPKG is earlier than 1.8.1+dfsg-5ubuntu0.4
  • OR krb5-kdc DPKG is earlier than 1.8.1+dfsg-5ubuntu0.4
  • OR libkrb5support0 DPKG is earlier than 1.8.1+dfsg-5ubuntu0.4
  • OR libgssapi-krb5-2 DPKG is earlier than 1.8.1+dfsg-5ubuntu0.4
  • OR krb5-admin-server DPKG is earlier than 1.8.1+dfsg-5ubuntu0.4
  • OR Release section
  • Ubuntu 9.10 is installed
  • AND Architecture section
  • Architecture independent section
  • Installed architecture is all
  • AND krb5-doc DPKG is earlier than 1.7dfsg~beta3-1ubuntu0.9
  • OR Architecture depended section
  • Supported architectures section
  • Installed architecture is amd64
  • OR Installed architecture is sparc
  • OR Installed architecture is powerpc
  • OR Installed architecture is i386
  • OR Installed architecture is armel
  • OR Installed architecture is lpia
  • AND Packages section
  • krb5-rsh-server DPKG is earlier than 1.7dfsg~beta3-1ubuntu0.9
  • OR libk5crypto3 DPKG is earlier than 1.7dfsg~beta3-1ubuntu0.9
  • OR krb5-kdc-ldap DPKG is earlier than 1.7dfsg~beta3-1ubuntu0.9
  • OR krb5-telnetd DPKG is earlier than 1.7dfsg~beta3-1ubuntu0.9
  • OR libkadm5clnt6 DPKG is earlier than 1.7dfsg~beta3-1ubuntu0.9
  • OR libkdb5-4 DPKG is earlier than 1.7dfsg~beta3-1ubuntu0.9
  • OR libgssrpc4 DPKG is earlier than 1.7dfsg~beta3-1ubuntu0.9
  • OR libkrb5-dev DPKG is earlier than 1.7dfsg~beta3-1ubuntu0.9
  • OR krb5-ftpd DPKG is earlier than 1.7dfsg~beta3-1ubuntu0.9
  • OR krb5-pkinit DPKG is earlier than 1.7dfsg~beta3-1ubuntu0.9
  • OR libkadm5srv6 DPKG is earlier than 1.7dfsg~beta3-1ubuntu0.9
  • OR krb5-admin-server DPKG is earlier than 1.7dfsg~beta3-1ubuntu0.9
  • OR libkrb5-3 DPKG is earlier than 1.7dfsg~beta3-1ubuntu0.9
  • OR libkrb5-dbg DPKG is earlier than 1.7dfsg~beta3-1ubuntu0.9
  • OR krb5-user DPKG is earlier than 1.7dfsg~beta3-1ubuntu0.9
  • OR krb5-clients DPKG is earlier than 1.7dfsg~beta3-1ubuntu0.9
  • OR libkrb5support0 DPKG is earlier than 1.7dfsg~beta3-1ubuntu0.9
  • OR libgssapi-krb5-2 DPKG is earlier than 1.7dfsg~beta3-1ubuntu0.9
  • OR krb5-kdc DPKG is earlier than 1.7dfsg~beta3-1ubuntu0.9
  • OR Release section
  • Ubuntu 10.04 is installed
  • AND Architecture section
  • Architecture independent section
  • Installed architecture is all
  • AND krb5-doc DPKG is earlier than 1.8.1+dfsg-2ubuntu0.6
  • OR Architecture depended section
  • Supported architectures section
  • Installed architecture is amd64
  • OR Installed architecture is i386
  • OR Installed architecture is powerpc
  • OR Installed architecture is sparc
  • OR Installed architecture is armel
  • AND Packages section
  • krb5-multidev DPKG is earlier than 1.8.1+dfsg-2ubuntu0.6
  • OR libk5crypto3 DPKG is earlier than 1.8.1+dfsg-2ubuntu0.6
  • OR krb5-kdc-ldap DPKG is earlier than 1.8.1+dfsg-2ubuntu0.6
  • OR libkadm5srv-mit7 DPKG is earlier than 1.8.1+dfsg-2ubuntu0.6
  • OR libkrb5-dev DPKG is earlier than 1.8.1+dfsg-2ubuntu0.6
  • OR krb5-pkinit DPKG is earlier than 1.8.1+dfsg-2ubuntu0.6
  • OR krb5-admin-server DPKG is earlier than 1.8.1+dfsg-2ubuntu0.6
  • OR libkrb5-3 DPKG is earlier than 1.8.1+dfsg-2ubuntu0.6
  • OR libkdb5-4 DPKG is earlier than 1.8.1+dfsg-2ubuntu0.6
  • OR libkrb5-dbg DPKG is earlier than 1.8.1+dfsg-2ubuntu0.6
  • OR krb5-user DPKG is earlier than 1.8.1+dfsg-2ubuntu0.6
  • OR krb5-kdc DPKG is earlier than 1.8.1+dfsg-2ubuntu0.6
  • OR libgssrpc4 DPKG is earlier than 1.8.1+dfsg-2ubuntu0.6
  • OR libkrb5support0 DPKG is earlier than 1.8.1+dfsg-2ubuntu0.6
  • OR libgssapi-krb5-2 DPKG is earlier than 1.8.1+dfsg-2ubuntu0.6
  • OR libkadm5clnt-mit7 DPKG is earlier than 1.8.1+dfsg-2ubuntu0.6
  • BACK