[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248364

 
 

909

 
 

195388

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

RHSA-2014:1255-01 -- Redhat krb5

ID: oval:org.secpod.oval:def:501383Date: (C)2014-09-19   (M)2023-12-07
Class: PATCHFamily: unix




Kerberos is an authentication system which allows clients and services to authenticate to each other with the help of a trusted third party, a Kerberos Key Distribution Center . A buffer overflow was found in the KADM5 administration server when it was used with an LDAP back end for the KDC database. A remote, authenticated attacker could potentially use this flaw to execute arbitrary code on the system running kadmind. All krb5 users are advised to upgrade to these updated packages, which contain a backported patch to correct this issue. After installing the updated packages, the krb5kdc and kadmind daemons will be restarted automatically.

Platform:
Red Hat Enterprise Linux 5
Product:
krb5
Reference:
RHSA-2014:1255-01
CVE-2014-4345
CVE    1
CVE-2014-4345
CPE    2
cpe:/o:redhat:enterprise_linux:5
cpe:/a:mit:krb5

© SecPod Technologies