PT-2006-7544 · Heimdal+1 · Libkadm5Srv7-Heimdal+8

Published

1970-01-01

·

Updated

2018-10-19

·

CVE-2006-0582

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Heimdal versions 0.6.x through 0.6.5 Heimdal versions 0.7.x through 0.7.1 libasn1-6-heimdal (affected versions not specified) libkadm5srv7-heimdal (affected versions not specified) libhdb7-heimdal (affected versions not specified) libkadm5clnt4-heimdal (affected versions not specified) libkafs0-heimdal (affected versions not specified) libkrb5-17-heimdal (affected versions not specified) libgssapi1-heimdal (affected versions not specified)
Description The issue involves multiple vulnerabilities in the Heimdal package of the Debian GNU/Linux operating system, which can lead to disruption of protected information. These vulnerabilities can be exploited remotely. The vulnerabilities in rshd, when storing forwarded credentials, allow attackers to overwrite arbitrary files and change file ownership via unknown vectors.
Recommendations For Heimdal versions 0.6.x through 0.6.5, update to version 0.6.6 or later. For Heimdal versions 0.7.x through 0.7.1, update to version 0.7.2 or later. For libasn1-6-heimdal, libkadm5srv7-heimdal, libhdb7-heimdal, libkadm5clnt4-heimdal, libkafs0-heimdal, libkrb5-17-heimdal, and libgssapi1-heimdal, at the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

BDU:2015-01354
BDU:2015-01356
BDU:2015-01357
BDU:2015-01358
BDU:2015-01359
BDU:2015-01360
BDU:2015-01361
CVE-2006-0582
DSA-977-1

Affected Products

Debian
Heimdal
Libasn1-6-Heimdal
Libgssapi1-Heimdal
Libhdb7-Heimdal
Libkadm5Clnt4-Heimdal
Libkadm5Srv7-Heimdal
Libkafs0-Heimdal
Libkrb5-17-Heimdal