Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2016-3119

Опубликовано: 14 мар. 2016
Источник: redhat
CVSS2: 2.1
EPSS Средний

Описание

The process_db_args function in plugins/kdb/ldap/libkdb_ldap/ldap_principal2.c in the LDAP KDB module in kadmind in MIT Kerberos 5 (aka krb5) through 1.13.4 and 1.14.x through 1.14.1 mishandles the DB argument, which allows remote authenticated users to cause a denial of service (NULL pointer dereference and daemon crash) via a crafted request to modify a principal.

A NULL pointer dereference flaw was found in MIT Kerberos kadmind service. An authenticated attacker with permission to modify a principal entry could use this flaw to cause kadmind to dereference a null pointer and crash by supplying an empty DB argument to the modify_principal command, if kadmind was configured to use the LDAP KDB module.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 5krb5Will not fix
Red Hat Enterprise Linux 6krb5Will not fix
Red Hat JBoss Enterprise Web Server 2krb5Not affected
Red Hat Enterprise Linux 7krb5FixedRHSA-2016:259103.11.2016

Показывать по

Дополнительная информация

Статус:

Low
Дефект:
CWE-476
https://bugzilla.redhat.com/show_bug.cgi?id=1319616krb5: null pointer dereference in kadmin

EPSS

Процентиль: 98%
0.39969
Средний

2.1 Low

CVSS2

Связанные уязвимости

CVSS3: 5.3
ubuntu
больше 10 лет назад

The process_db_args function in plugins/kdb/ldap/libkdb_ldap/ldap_principal2.c in the LDAP KDB module in kadmind in MIT Kerberos 5 (aka krb5) through 1.13.4 and 1.14.x through 1.14.1 mishandles the DB argument, which allows remote authenticated users to cause a denial of service (NULL pointer dereference and daemon crash) via a crafted request to modify a principal.

CVSS3: 5.3
nvd
больше 10 лет назад

The process_db_args function in plugins/kdb/ldap/libkdb_ldap/ldap_principal2.c in the LDAP KDB module in kadmind in MIT Kerberos 5 (aka krb5) through 1.13.4 and 1.14.x through 1.14.1 mishandles the DB argument, which allows remote authenticated users to cause a denial of service (NULL pointer dereference and daemon crash) via a crafted request to modify a principal.

CVSS3: 5.3
debian
больше 10 лет назад

The process_db_args function in plugins/kdb/ldap/libkdb_ldap/ldap_prin ...

suse-cvrf
больше 10 лет назад

Security update for krb5

suse-cvrf
больше 10 лет назад

Security update for krb5

EPSS

Процентиль: 98%
0.39969
Средний

2.1 Low

CVSS2

Уязвимость CVE-2016-3119