[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248038

 
 

909

 
 

194772

 
 

282

Paid content will be excluded from the download.


Download | Alert*
CVE
view JSON

CVE-2011-0285Date: (C)2011-04-14   (M)2023-12-22


The process_chpw_request function in schpw.c in the password-changing functionality in kadmind in MIT Kerberos 5 (aka krb5) 1.7 through 1.9 frees an invalid pointer, which allows remote attackers to execute arbitrary code or cause a denial of service (daemon crash) via a crafted request that triggers an error condition.

CVSS Score and Metrics +CVSS Score and Metrics -

CVSS V2 Severity:
CVSS Score : 10.0
Exploit Score: 10.0
Impact Score: 10.0
 
CVSS V2 Metrics:
Access Vector: NETWORK
Access Complexity: LOW
Authentication: NONE
Confidentiality: COMPLETE
Integrity: COMPLETE
Availability: COMPLETE
  
Reference:
SECTRACK-1025320
http://www.securityfocus.com/archive/1/517484/100/0/threaded
SECUNIA-44125
SECUNIA-44181
SECUNIA-44196
BID-47310
OSVDB-71789
SREASON-8200
ADV-2011-0936
ADV-2011-0986
ADV-2011-0997
FEDORA-2011-5333
MDVSA-2011:077
RHSA-2011:0447
http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=621726
http://krbdev.mit.edu/rt/Ticket/Display.html?id=6899
http://web.mit.edu/kerberos/advisories/MITKRB5-SA-2011-004.txt
openSUSE-SU-2011:0348

CWE    1
CWE-20
OVAL    9
oval:org.secpod.oval:def:301002
oval:org.secpod.oval:def:700494
oval:org.secpod.oval:def:500144
oval:org.secpod.oval:def:1503595
...

© SecPod Technologies