Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2012-1013

Опубликовано: 07 июн. 2012
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS2: 4

Описание

The check_1_6_dummy function in lib/kadm5/srv/svr_principal.c in kadmind in MIT Kerberos 5 (aka krb5) 1.8.x, 1.9.x, and 1.10.x before 1.10.2 allows remote authenticated administrators to cause a denial of service (NULL pointer dereference and daemon crash) via a KRB5_KDB_DISALLOW_ALL_TIX create request that lacks a password.

РелизСтатусПримечание
devel

not-affected

1.10.1+dfsg-3
esm-infra-legacy/trusty

not-affected

1.10.1+dfsg-3
hardy

ignored

end of life
lucid

released

1.8.1+dfsg-2ubuntu0.11
natty

released

1.8.3+dfsg-5ubuntu2.3
oneiric

released

1.9.1+dfsg-1ubuntu2.3
precise

released

1.10+dfsg~beta1-2ubuntu0.3
quantal

ignored

end of life
raring

not-affected

1.10.1+dfsg-3
saucy

not-affected

1.10.1+dfsg-3

Показывать по

EPSS

Процентиль: 77%
0.01108
Низкий

4 Medium

CVSS2

Связанные уязвимости

redhat
около 13 лет назад

The check_1_6_dummy function in lib/kadm5/srv/svr_principal.c in kadmind in MIT Kerberos 5 (aka krb5) 1.8.x, 1.9.x, and 1.10.x before 1.10.2 allows remote authenticated administrators to cause a denial of service (NULL pointer dereference and daemon crash) via a KRB5_KDB_DISALLOW_ALL_TIX create request that lacks a password.

nvd
около 13 лет назад

The check_1_6_dummy function in lib/kadm5/srv/svr_principal.c in kadmind in MIT Kerberos 5 (aka krb5) 1.8.x, 1.9.x, and 1.10.x before 1.10.2 allows remote authenticated administrators to cause a denial of service (NULL pointer dereference and daemon crash) via a KRB5_KDB_DISALLOW_ALL_TIX create request that lacks a password.

debian
около 13 лет назад

The check_1_6_dummy function in lib/kadm5/srv/svr_principal.c in kadmi ...

github
больше 3 лет назад

The check_1_6_dummy function in lib/kadm5/srv/svr_principal.c in kadmind in MIT Kerberos 5 (aka krb5) 1.8.x, 1.9.x, and 1.10.x before 1.10.2 allows remote authenticated administrators to cause a denial of service (NULL pointer dereference and daemon crash) via a KRB5_KDB_DISALLOW_ALL_TIX create request that lacks a password.

oracle-oval
около 13 лет назад

ELSA-2012-1131: krb5 security update (IMPORTANT)

EPSS

Процентиль: 77%
0.01108
Низкий

4 Medium

CVSS2