In Zeek Network Security Monitor (formerly known as Bro) before 2.6.2, a NULL pointer dereference in the Kerberos (aka KRB) protocol parser leads to DoS because a case-type index is mishandled.
A NULL pointer dereference occurs when the application dereferences a pointer that it expects to be valid, but is NULL, typically causing a crash or exit.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Zeek | Zeek | * | 2.6.2 (excluding) |
Bro | Ubuntu | bionic | * |
Bro | Ubuntu | trusty | * |
Bro | Ubuntu | upstream | * |
Bro | Ubuntu | xenial | * |