Alerts This Week
Warning Icon 1 727
Alerts This Week
Warning Icon 1 727

Gentoo: 200406-21 High Risk: mit-krb5 Remote Execution Flaws

gentoo
Calendar Grey June 29, 2004
Dist Gentoo Esm H88
Several memory overflow vulnerabilities in mit-krb5 have the potential to enable remote exploitation on Gentoo machines. It is advised to perform an upgrade.
mit-krb5 contains multiple buffer overflows in the function krb5_aname_to_localname()

Summary

Gentoo Linux Security Advisory GLSA 200406-21 https://security.gentoo.org/ Severity: High Title: mit-krb5: Multiple buffer overflows in krb5_aname_to_localname Date: June 29, 2004 Bugs: #52744 ID: 200406-21

Synopsis ======= mit-krb5 contains multiple buffer overflows in the function krb5_aname_to_localname(). This could potentially lead to a complete remote system compromise.
Background ========= mit-krb5 is the free implementation of the Kerberos network authentication protocol by the Massachusetts Institute of Technology.
Affected packages ================ ------------------------------------------------------------------- Package / Vulnerable / Unaffected ------------------------------------------------------------------- 1 app-crypt/mit-krb5 <= 1.3.3 >= 1.3.3-r1
========== The library function krb5_aname_to_localname() contains ...

Read the Full Advisory

Resolution

References

Availability

style>.gentoo_availability{display:block;}

Concerns

Synopsis

Background

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Affected Packages

Impact

Workaround

Your message here