PT-2013-1188 · Mit+3 · Krb5-Devel+10

Taylor Yu

·

Published

2013-04-16

·

Updated

2021-02-02

·

CVE-2013-1416

CVSS v2.0

8.5

High

VectorAV:N/AC:M/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions krb5-server versions 1.10.3 krb5-devel versions 1.10.3 krb5-pkinit-openssl versions 1.10.3 krb5-debuginfo versions 1.10.3 krb5-workstation versions 1.10.3 krb5-server-ldap versions 1.10.3 krb5-libs versions 1.10.3 mit-krb5 versions prior to 1.11.4
Description The vulnerability may lead to a disruption of confidentiality, integrity, and availability of protected information. It can be exploited remotely by an attacker who has passed the authentication procedure. The prep reprocess req function in do tgs req.c in the Key Distribution Center (KDC) in MIT Kerberos 5 does not properly perform service-principal realm referral, which allows remote authenticated users to cause a denial of service (NULL pointer dereference and daemon crash) via a crafted TGS-REQ request.
Recommendations For krb5-server versions 1.10.3, update to a version later than 1.10.5. For krb5-devel versions 1.10.3, update to a version later than 1.10.5. For krb5-pkinit-openssl versions 1.10.3, update to a version later than 1.10.5. For krb5-debuginfo versions 1.10.3, update to a version later than 1.10.5. For krb5-workstation versions 1.10.3, update to a version later than 1.10.5. For krb5-server-ldap versions 1.10.3, update to a version later than 1.10.5. For krb5-libs versions 1.10.3, update to a version later than 1.10.5. For mit-krb5 versions prior to 1.11.4, update to version 1.11.4 or later. As a temporary workaround, consider disabling the prep reprocess req function until a patch is available.

Fix

DoS

RCE

NULL Pointer Dereference

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2015-07298
BDU:2015-07301
BDU:2015-07306
BDU:2015-07311
BDU:2015-07313
BDU:2015-07318
BDU:2015-07321
BDU:2015-08978
BDU:2015-08979
BDU:2015-08980
BDU:2015-08981
BDU:2015-08982
BDU:2015-08983
BDU:2015-08984
BDU:2015-09675
CESA-2013_0748
CVE-2013-1416
RHSA-2013:0748
RHSA-2013_0748
USN-2310-1

Affected Products

Centos
Red Hat
Ubuntu
Krb5-Debuginfo
Krb5-Devel
Krb5-Libs
Krb5-Pkinit-Openssl
Krb5-Server
Krb5-Server-Ldap
Krb5-Workstation
Mit-Krb5