Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 461
Alerts This Week
Warning Icon 1 461

Gentoo: GLSA-200707-11 High: MIT Kerberos Arbitrary Code Execution

gentoo
Calendar Grey July 26, 2007
Scroller Gentoo
Several security flaws in MIT Kerberos 5 may enable remote code execution with elevated privileges, posing risks to Gentoo environments.
Multiple vulnerabilities in MIT Kerberos 5 could potentially result in remote code execution with root privileges by unauthenticated users.

Summary

Gentoo Linux Security Advisory GLSA 200707-11 https://security.gentoo.org/ Severity: High Title: MIT Kerberos 5: Arbitrary remote code execution Date: July 25, 2007 Bugs: #183338 ID: 200707-11

Synopsis ======= Multiple vulnerabilities in MIT Kerberos 5 could potentially result in remote code execution with root privileges by unauthenticated users.
Background ========= MIT Kerberos 5 is a suite of applications that implement the Kerberos network protocol.
Affected packages ================ ------------------------------------------------------------------- Package / Vulnerable / Unaffected ------------------------------------------------------------------- 1 app-crypt/mit-krb5 < 1.5.2-r3 >= 1.5.2-r3
========== kadmind is affected by multiple vulnerabilities in the RPC library shipped with MIT Kerberos 5. It fails to p...

Read the Full Advisory

Resolution

References

Availability

style>.gentoo_availability{display:block;}

Concerns

Synopsis

Background

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Affected Packages

Impact

Workaround