|
|
Subscribe / Log in / New account

krb5: information disclosure

Package(s):krb5 CVE #(s):CVE-2012-1012
Created:August 1, 2012 Updated:August 1, 2012
Description: From the Ubuntu advisory:

It was discovered that the kadmin protocol implementation in MIT krb5 did not properly restrict access to the SET_STRING and GET_STRINGS operations. A remote authenticated attacker could use this to expose or modify sensitive information. This issue only affected Ubuntu 12.04 LTS.

Alerts:
Ubuntu USN-1520-1 krb5 2012-07-31

to post comments


Copyright © 2025, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds