|
|
Subscribe / Log in / New account

krb5: denial of service

Package(s):krb5 CVE #(s):CVE-2009-0844 CVE-2009-0845 CVE-2009-0846 CVE-2009-0847
Created:March 30, 2009 Updated:January 14, 2010
Description:

From the Mandriva advisory:

The spnego_gss_accept_sec_context function in lib/gssapi/spnego/spnego_mech.c in MIT Kerberos 5 (aka krb5) 1.6.3, when SPNEGO is used, allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via invalid ContextFlags data in the reqFlags field in a negTokenInit token (CVE-2009-0845).

From the Red Hat advisory:

An input validation flaw was found in the ASN.1 (Abstract Syntax Notation One) decoder used by MIT Kerberos. A remote attacker could use this flaw to crash a network service using the MIT Kerberos library, such as kadmind or krb5kdc, by causing it to dereference or free an uninitialized pointer. (CVE-2009-0846)

Multiple input validation flaws were found in the MIT Kerberos GSS-API library's implementation of the SPNEGO mechanism. A remote attacker could use these flaws to crash any network service utilizing the MIT Kerberos GSS-API library to authenticate users or, possibly, leak portions of the service's memory. (CVE-2009-0844, CVE-2009-0845)

Alerts:
Mandriva MDVSA-2010:005 krb5 2010-01-13
Mandriva MDVSA-2009:098-1 krb5 2009-12-08
Mandriva MDVSA-2009:098 krb5 2009-04-27
Debian DSA-1766-1 krb5 2009-04-09
Gentoo 200904-09 mit-krb5 2009-04-08
Ubuntu USN-755-1 krb5 2009-04-07
SuSE SUSE-SA:2009:019 krb5 2009-04-08
CentOS CESA-2009:0408 krb5 2009-04-08
CentOS CESA-2009:0409 krb5 2009-04-07
CentOS CESA-2009:0410 krb5 2009-04-07
Fedora FEDORA-2009-2852 krb5 2009-03-18
Fedora FEDORA-2009-2834 krb5 2009-03-18
rPath rPSA-2009-0058-1 krb5 2009-04-07
Red Hat RHSA-2009:0410-01 krb5 2009-04-07
Red Hat RHSA-2009:0409-01 krb5 2009-04-07
Red Hat RHSA-2009:0408-01 krb5 2009-04-07
Mandriva MDVSA-2009:082 krb5 2009-03-30

to post comments


Copyright © 2025, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds