[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248149

 
 

909

 
 

194803

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

MS11-013 - Unkeyed checksum vulnerability in Kerberos implementation in Windows XP or Windows Server 2003

ID: oval:org.secpod.oval:def:94Date: (C)2011-02-10   (M)2022-10-10
Class: VULNERABILITYFamily: windows




The host is installed with Windows XP or Windows Server 2003 and is prone to Unkeyed checksum vulnerability. A flaw is present in Kerberos implementation, which fails to restrict support for weak hashing mechanisms such as CRC32 allowing certain aspects of a Kerberos service ticket to be forged. Successful exploitation which allows attackers to obtain a token with elevated privileges on the affected system.

Platform:
Microsoft Windows Server 2003
Microsoft Windows XP
Reference:
CVE-2011-0043
CVE    1
CVE-2011-0043
CPE    6
cpe:/o:microsoft:windows_2003_server::sp2
cpe:/o:microsoft:windows_2003_server::sp2:itanium
cpe:/o:microsoft:windows_xp:-:sp2:x64
cpe:/o:microsoft:windows_xp
...

© SecPod Technologies