CVE Vulnerabilities

CVE-2007-1216

Double Free

Published: Apr 06, 2007 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
9 HIGH
AV:N/AC:L/Au:S/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

Double free vulnerability in the GSS-API library (lib/gssapi/krb5/k5unseal.c), as used by the Kerberos administration daemon (kadmind) in MIT krb5 before 1.6.1, when used with the authentication method provided by the RPCSEC_GSS RPC library, allows remote authenticated users to execute arbitrary code and modify the Kerberos key database via a message with an an invalid direction encoding.

Weakness

The product calls free() twice on the same memory address.

Affected Software

NameVendorStart VersionEnd Version
Kerberos_5Mit*1.6.1 (excluding)
Red Hat Enterprise Linux 2.1RedHatkrb5-0:1.2.2-44*
Red Hat Enterprise Linux 3RedHatkrb5-0:1.2.7-61*
Red Hat Enterprise Linux 4RedHatkrb5-0:1.3.4-46*
Red Hat Enterprise Linux 5RedHatkrb5-0:1.5-23*
Krb5Ubuntudapper*
Krb5Ubuntudevel*
Krb5Ubuntuedgy*
Krb5Ubuntufeisty*

Potential Mitigations

References