| Definition Id: oval:org.mitre.oval:def:4936 |
Date: 2005-01-14 |
| Title: |
Kerberos 5 KDC ASN.1 Error Handling Double-free Vulnerabilities |
| Description: |
Double free vulnerabilities in the error handling code for ASN.1 decoders in the (1) Key Distribution Center (KDC) library and (2) client library for MIT Kerberos 5 (krb5) 1.3.4 and earlier may allow remote attackers to execute arbitrary code. |
| Version: |
1 |
Class: |
vulnerability |
| Status: |
ACCEPTED |
Reference(s): |
CVE-2004-0642
|
| Family: |
unix |
| Platform(s): |
Sun Solaris 9 |
Product(s): |
Kerberos5 |
| Definition Synopsis: |
- Software section
- AND Configuration section
|