ZeroHour

CVE-2018-5729

CVSS 3.1
4.7 medium
EPSS
3%p84
Published
()
Modified
Description

MIT krb5 1.6 or later allows an authenticated kadmin with permission to add principals to an LDAP Kerberos database to cause a denial of service (NULL pointer dereference) or bypass a DN container check by supplying tagged data that is internal to the database module.

Vendors
mitfedoraprojectdebianredhat
Products
kerberos 5, fedora, debian linux, enterprise linux desktop, enterprise linux server, enterprise linux workstation
Weakness
CWE-476
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:L

In the news

No ingested article mentions this CVE yet.