CVE Vulnerabilities

CVE-2016-3119

Published: Mar 26, 2016 | Modified: Jan 21, 2020
CVSS 3.x
5.3
MEDIUM
Source:
NVD
CVSS:3.0/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H
CVSS 2.x
3.5 LOW
AV:N/AC:M/Au:S/C:N/I:N/A:P
RedHat/V2
2.1 LOW
AV:N/AC:H/Au:S/C:N/I:N/A:P
RedHat/V3
Ubuntu
MEDIUM

The process_db_args function in plugins/kdb/ldap/libkdb_ldap/ldap_principal2.c in the LDAP KDB module in kadmind in MIT Kerberos 5 (aka krb5) through 1.13.4 and 1.14.x through 1.14.1 mishandles the DB argument, which allows remote authenticated users to cause a denial of service (NULL pointer dereference and daemon crash) via a crafted request to modify a principal.

Affected Software

Name Vendor Start Version End Version
Leap Opensuse 42.1 (including) 42.1 (including)
Opensuse Opensuse 13.2 (including) 13.2 (including)
Red Hat Enterprise Linux 7 RedHat krb5-0:1.14.1-26.el7 *
Krb5 Ubuntu precise *
Krb5 Ubuntu precise/esm *
Krb5 Ubuntu trusty *
Krb5 Ubuntu upstream *
Krb5 Ubuntu vivid/stable-phone-overlay *
Krb5 Ubuntu vivid/ubuntu-core *
Krb5 Ubuntu wily *
Krb5 Ubuntu xenial *

References