Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2015-8630

Опубликовано: 13 фев. 2016
Источник: ubuntu
Приоритет: medium
CVSS2: 5
CVSS3: 7.5

Описание

The (1) kadm5_create_principal_3 and (2) kadm5_modify_principal functions in lib/kadm5/srv/svr_principal.c in kadmind in MIT Kerberos 5 (aka krb5) 1.12.x and 1.13.x before 1.13.4 and 1.14.x before 1.14.1 allow remote authenticated users to cause a denial of service (NULL pointer dereference and daemon crash) by specifying KADM5_POLICY with a NULL policy name.

РелизСтатусПримечание
artful

not-affected

1.14.3+dfsg-2ubuntu1
bionic

not-affected

1.14.3+dfsg-2ubuntu1
cosmic

not-affected

1.14.3+dfsg-2ubuntu1
devel

not-affected

1.14.3+dfsg-2ubuntu1
esm-infra-legacy/trusty

not-affected

1.12+dfsg-2ubuntu5.4
esm-infra/bionic

not-affected

1.14.3+dfsg-2ubuntu1
esm-infra/xenial

not-affected

1.13.2+dfsg-5
precise

not-affected

1.10+dfsg~beta1-2ubuntu0.7
precise/esm

not-affected

1.10+dfsg~beta1-2ubuntu0.7
trusty

released

1.12+dfsg-2ubuntu5.4

Показывать по

Ссылки на источники

5 Medium

CVSS2

7.5 High

CVSS3

Связанные уязвимости

redhat
больше 9 лет назад

The (1) kadm5_create_principal_3 and (2) kadm5_modify_principal functions in lib/kadm5/srv/svr_principal.c in kadmind in MIT Kerberos 5 (aka krb5) 1.12.x and 1.13.x before 1.13.4 and 1.14.x before 1.14.1 allow remote authenticated users to cause a denial of service (NULL pointer dereference and daemon crash) by specifying KADM5_POLICY with a NULL policy name.

CVSS3: 7.5
nvd
больше 9 лет назад

The (1) kadm5_create_principal_3 and (2) kadm5_modify_principal functions in lib/kadm5/srv/svr_principal.c in kadmind in MIT Kerberos 5 (aka krb5) 1.12.x and 1.13.x before 1.13.4 and 1.14.x before 1.14.1 allow remote authenticated users to cause a denial of service (NULL pointer dereference and daemon crash) by specifying KADM5_POLICY with a NULL policy name.

CVSS3: 7.5
debian
больше 9 лет назад

The (1) kadm5_create_principal_3 and (2) kadm5_modify_principal functi ...

CVSS3: 7.5
github
больше 3 лет назад

The (1) kadm5_create_principal_3 and (2) kadm5_modify_principal functions in lib/kadm5/srv/svr_principal.c in kadmind in MIT Kerberos 5 (aka krb5) 1.12.x and 1.13.x before 1.13.4 and 1.14.x before 1.14.1 allow remote authenticated users to cause a denial of service (NULL pointer dereference and daemon crash) by specifying KADM5_POLICY with a NULL policy name.

suse-cvrf
больше 9 лет назад

Security update for krb5

5 Medium

CVSS2

7.5 High

CVSS3