PT-2018-17115 · Mit+4 · Mit-Krb5+4

Laura Pardo

·

Published

2018-01-06

·

Updated

2025-05-05

·

CVE-2018-5730

CVSS v2.0

5.5

Medium

VectorAV:N/AC:L/Au:S/C:P/I:P/A:N
Name of the Vulnerable Software and Affected Versions: MIT krb5 versions 1.6 or later
Description: The issue allows an authenticated kadmin with permission to add principals to an LDAP Kerberos database to circumvent a DN containership check. This can be done by supplying both a linkdn and containerdn database argument, or by supplying a DN string which is a left extension of a container DN string but is not hierarchically within the container DN.
Recommendations: For MIT krb5 versions 1.6 or later, consider restricting the ability to add principals to the LDAP Kerberos database to prevent exploitation of this issue. As a temporary workaround, limit the use of linkdn and containerdn database arguments to minimize the risk of circumventing the DN containership check. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Weakness Enumeration

Related Identifiers

ALT-PU-2018-2231
BDU:2026-01433
CESA-2018_3071
CVE-2018-5730
DLA-1643-1
DLA-2771-1
MGASA-2018-0155
OPENSUSE-SU-2019:0139-1
OPENSUSE-SU-2019_0139-1
RHSA-2018:3071
RHSA-2018_3071
SUSE-SU-2018:0846-1
SUSE-SU-2018:0859-1
SUSE-SU-2019:0175-1

Affected Products

Alt Linux
Centos
Mit-Krb5
Red Hat
Suse