Revision Date: | 2006-09-27 | Version: | 16 |
Title: | Kerberos 5 KDC Buffer Underrun in Principle Name Handling |
Description: | The Key Distribution Center (KDC) in Kerberos 5 (krb5) 1.2.7 and earlier allows remote, authenticated attackers to cause a denial of service (crash) on KDCs within the same realm using a certain protocol request that causes the KDC to corrupt its heap (aka "buffer underrun"). |
Family: | unix | Class: | vulnerability |
Status: | ACCEPTED | Reference(s): | CVE-2003-0082
|
Platform(s): | Sun Solaris 7
| Product(s): | Solaris Enterprise Authentication Mechanism (SEAM)
|
Definition Synopsis |
Solaris 7,8,or 9 installed Solaris 8 Installed
OR Solaris 7 Installed
OR Solaris 9 Installed
AND Sun Enterprise Authentication Mechanism (SEAM, SUNWkr5sv) installed
AND Patches 112536-04 and 110057-07 or later installed
Patch 112536-04 or later installed
AND Patch 110057-07 or later installed
AND NOT Patch 110060-04 or later installed
AND NOT Patch 116462-01 or later installed
|