CVE Vulnerabilities

CVE-2003-0082

Published: Apr 02, 2003 | Modified: Jan 21, 2020
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu

The Key Distribution Center (KDC) in Kerberos 5 (krb5) 1.2.7 and earlier allows remote, authenticated attackers to cause a denial of service (crash) on KDCs within the same realm using a certain protocol request that causes the KDC to corrupt its heap (aka buffer underrun).

Affected Software

Name Vendor Start Version End Version
Kerberos Mit 1.0 (including) 1.0 (including)
Kerberos Mit 1.2.2.beta1 (including) 1.2.2.beta1 (including)
Kerberos_5 Mit 1.0.6 (including) 1.0.6 (including)
Kerberos_5 Mit 1.1 (including) 1.1 (including)
Kerberos_5 Mit 1.1.1 (including) 1.1.1 (including)
Kerberos_5 Mit 1.2 (including) 1.2 (including)
Kerberos_5 Mit 1.2.1 (including) 1.2.1 (including)
Kerberos_5 Mit 1.2.2 (including) 1.2.2 (including)
Kerberos_5 Mit 1.2.3 (including) 1.2.3 (including)
Kerberos_5 Mit 1.2.4 (including) 1.2.4 (including)
Kerberos_5 Mit 1.2.5 (including) 1.2.5 (including)
Kerberos_5 Mit 1.2.6 (including) 1.2.6 (including)
Kerberos_5 Mit 1.2.7 (including) 1.2.7 (including)
Kerberos_5 Mit 1.3-alpha1 (including) 1.3-alpha1 (including)
Red Hat Enterprise Linux AS (Advanced Server) version 2.1 RedHat *
Red Hat Enterprise Linux ES version 2.1 RedHat *
Red Hat Enterprise Linux WS version 2.1 RedHat *
Red Hat Linux 6.2 RedHat *
Red Hat Linux 7.0 RedHat *
Red Hat Linux 7.1 RedHat *
Red Hat Linux 7.1 RedHat *
Red Hat Linux 7.2 RedHat *
Red Hat Linux 7.3 RedHat *
Red Hat Linux 8.0 RedHat *
Red Hat Linux 9 RedHat *
Red Hat Linux Advanced Workstation 2.1 RedHat *

References