PT-2004-1525 · Heimdal · Heimdal
Published
2004-04-06
·
Updated
2017-07-11
·
CVE-2004-0371
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:N/I:P/A:N |
Name of the Vulnerable Software and Affected Versions
Heimdal versions 0.5.x through 0.5.2
Heimdal versions 0.6.x through 0.6.0
Description
The issue is related to improper consistency checks for cross-realm requests, allowing remote attackers with control of a realm to impersonate others in the cross-realm trust path.
Recommendations
For Heimdal versions 0.5.x through 0.5.2, update to version 0.5.3 to resolve the issue.
For Heimdal versions 0.6.x through 0.6.0, update to version 0.6.1 to resolve the issue.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Heimdal