PT-2006-7544 · Heimdal+1 · Libkadm5Srv7-Heimdal+8
Published
1970-01-01
·
Updated
2018-10-19
·
CVE-2006-0582
CVSS v2.0
7.8
High
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
Heimdal versions 0.6.x through 0.6.5
Heimdal versions 0.7.x through 0.7.1
libasn1-6-heimdal (affected versions not specified)
libkadm5srv7-heimdal (affected versions not specified)
libhdb7-heimdal (affected versions not specified)
libkadm5clnt4-heimdal (affected versions not specified)
libkafs0-heimdal (affected versions not specified)
libkrb5-17-heimdal (affected versions not specified)
libgssapi1-heimdal (affected versions not specified)
Description
The issue involves multiple vulnerabilities in the Heimdal package of the Debian GNU/Linux operating system, which can lead to disruption of protected information. These vulnerabilities can be exploited remotely. The vulnerabilities in rshd, when storing forwarded credentials, allow attackers to overwrite arbitrary files and change file ownership via unknown vectors.
Recommendations
For Heimdal versions 0.6.x through 0.6.5, update to version 0.6.6 or later.
For Heimdal versions 0.7.x through 0.7.1, update to version 0.7.2 or later.
For libasn1-6-heimdal, libkadm5srv7-heimdal, libhdb7-heimdal, libkadm5clnt4-heimdal, libkafs0-heimdal, libkrb5-17-heimdal, and libgssapi1-heimdal, at the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Debian
Heimdal
Libasn1-6-Heimdal
Libgssapi1-Heimdal
Libhdb7-Heimdal
Libkadm5Clnt4-Heimdal
Libkadm5Srv7-Heimdal
Libkafs0-Heimdal
Libkrb5-17-Heimdal