Jump to content

Build Theme!
  •  
  • Infected?

WE'RE SURE THAT YOU'LL LOVE US!

Hey there! :wub: Looks like you're enjoying the discussion, but you're not signed up for an account. When you create an account, we remember exactly what you've read, so you always come right back where you left off. You also get notifications, here and via email, whenever new posts are made. You can like posts to share the love. :D Join 93115 other members! Anybody can ask, anybody can answer. Consistently helpful members may be invited to become staff. Here's how it works. Virus cleanup? Start here -> Malware Removal Forum.

Try What the Tech -- It's free!


Photo

Kerberos Multiple Vulns - Update Available


  • Please log in to reply
2 replies to this topic

#1 AplusWebMaster

AplusWebMaster

    AplusWebMaster

  • Authentic Member
  • PipPipPipPipPipPipPip
  • 10,472 posts
  • Interests:... The never-ending battle for Truth, Justice, and the American way.

Posted 27 June 2007 - 05:19 AM

FYI...

- http://secunia.com/advisories/25800/
Release Date: 2007-06-27
Critical: Highly critical
Impact: DoS. System access
Where: From remote
Solution Status: Vendor Workaround
Software: Kerberos 5.x
...Successful exploitation allows execution of arbitrary code but requires valid user credentials. The vulnerabilities are reported in krb5-1.6.1. Other versions may also be affected.
Solution: Apply patches (see vendor advisories for details).

http://web.mit.edu/k...7-004-patch.txt
http://web.mit.edu/k...4-patch.txt.asc

http://web.mit.edu/k...7-005-patch.txt
http://web.mit.edu/k...5-patch.txt.asc

Original Advisory: Kerberos:
http://web.mit.edu/k...SA-2007-004.txt
http://web.mit.edu/k...SA-2007-005.txt

> http://www.us-cert.g..._administration

.

.The machine has no brain.
 ......... Use your own.
Browser check for updates here.
YOU need to defend against -all- vulnerabilities.
Hacks only need to find -1- to get in...
.

    Advertisements

Register to Remove


#2 AplusWebMaster

AplusWebMaster

    AplusWebMaster

  • Authentic Member
  • PipPipPipPipPipPipPip
  • 10,472 posts
  • Interests:... The never-ending battle for Truth, Justice, and the American way.

Posted 05 September 2007 - 04:48 AM

FYI...

- http://secunia.com/advisories/26676/
Release Date: 2007-09-05
Critical: Highly critical
Impact: DoS, System access
Where: From remote
Solution Status: Vendor Workaround
Software: Kerberos 5.x...
Solution: Update to Kerberos 1.5.5 or 1.6.3 as soon as available or apply patches.
http://web.mit.edu/k...7-006-patch.txt
Original Advisory:
http://web.mit.edu/k...SA-2007-006.txt ...

> http://www.us-cert.g...administration1

.

Edited by AplusWebMaster, 05 September 2007 - 04:56 AM.

.The machine has no brain.
 ......... Use your own.
Browser check for updates here.
YOU need to defend against -all- vulnerabilities.
Hacks only need to find -1- to get in...
.


#3 AplusWebMaster

AplusWebMaster

    AplusWebMaster

  • Authentic Member
  • PipPipPipPipPipPipPip
  • 10,472 posts
  • Interests:... The never-ending battle for Truth, Justice, and the American way.

Posted 19 March 2008 - 04:42 AM

FYI...

- http://secunia.com/advisories/29428/
Release Date: 2008-03-19
Critical: Highly critical
Impact: Exposure of sensitive information, DoS, System access
Where: From remote
Solution Status: Vendor Patch
Software: Kerberos 5.x ...
Solution: Apply vendor patches.
http://web.mit.edu/k...8-001-patch.txt
http://web.mit.edu/k...SA-2008-002.txt ...
Original Advisory:
http://web.mit.edu/k...SA-2008-001.txt
http://web.mit.edu/k...SA-2008-002.txt ...

- http://nvd.nist.gov/...e=CVE-2008-0063

- http://nvd.nist.gov/...e=CVE-2008-0062

:ph34r:

Edited by AplusWebMaster, 19 March 2008 - 06:26 AM.

.The machine has no brain.
 ......... Use your own.
Browser check for updates here.
YOU need to defend against -all- vulnerabilities.
Hacks only need to find -1- to get in...
.

Related Topics



0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users