krb5: denial of service
Package(s): | krb5 | CVE #(s): | CVE-2012-1015 | ||||||||||||||||||||||||||||||||||||||||||||||||||||
Created: | August 1, 2012 | Updated: | August 6, 2012 | ||||||||||||||||||||||||||||||||||||||||||||||||||||
Description: | From the Red Hat advisory:
An uninitialized pointer use flaw was found in the way the MIT Kerberos KDC handled initial authentication requests (AS-REQ). A remote, unauthenticated attacker could use this flaw to crash the KDC via a specially-crafted AS-REQ request. | ||||||||||||||||||||||||||||||||||||||||||||||||||||||
Alerts: |
|