Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2009-1384

Опубликовано: 28 мая 2009
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS2: 5

Описание

pam_krb5 2.2.14 through 2.3.4, as used in Red Hat Enterprise Linux (RHEL) 5, generates different password prompts depending on whether the user account exists, which allows remote attackers to enumerate valid usernames.

РелизСтатусПримечание
artful

ignored

end of life
bionic

not-affected

code not present
cosmic

ignored

end of life
dapper

ignored

end of life
devel

not-affected

code not present
disco

ignored

end of life
eoan

not-affected

code not present
esm-infra-legacy/trusty

not-affected

code not present
esm-infra/bionic

not-affected

code not present
esm-infra/xenial

not-affected

code not present

Показывать по

Ссылки на источники

EPSS

Процентиль: 80%
0.01518
Низкий

5 Medium

CVSS2

Связанные уязвимости

redhat
около 16 лет назад

pam_krb5 2.2.14 through 2.3.4, as used in Red Hat Enterprise Linux (RHEL) 5, generates different password prompts depending on whether the user account exists, which allows remote attackers to enumerate valid usernames.

nvd
около 16 лет назад

pam_krb5 2.2.14 through 2.3.4, as used in Red Hat Enterprise Linux (RHEL) 5, generates different password prompts depending on whether the user account exists, which allows remote attackers to enumerate valid usernames.

debian
около 16 лет назад

pam_krb5 2.2.14 through 2.3.4, as used in Red Hat Enterprise Linux (RH ...

github
около 3 лет назад

pam_krb5 2.2.14 through 2.3.4, as used in Red Hat Enterprise Linux (RHEL) 5, generates different password prompts depending on whether the user account exists, which allows remote attackers to enumerate valid usernames.

oracle-oval
около 15 лет назад

ELSA-2010-0258: pam_krb5 security and bug fix update (LOW)

EPSS

Процентиль: 80%
0.01518
Низкий

5 Medium

CVSS2