PT-2007-5895 · Mit+2 · Mit Kerberos 5+2

Published

2007-09-06

·

Updated

2020-01-21

·

CVE-2007-4743

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions: MIT Kerberos 5 (krb5) versions 1.4 through 1.6.2
Description: The issue is related to a buffer length check in the RPCSEC GSS RPC library. This might allow remote attackers to conduct a buffer overflow attack in certain environments and architectures.
Recommendations: For versions 1.4 through 1.6.2, update to a version that includes the corrected patch to resolve the issue.

Fix

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2007-4743
DSA-1367-1
DSA-1387-1
RHSA-2007:0892
RHSA-2007_0892

Affected Products

Mit Kerberos 5
Rpcsec Gss Rpc Library
Red Hat