CVE-2000-0549
published 2000-06-09CVE-2000-0549: Kerberos 4 KDC program does not properly check for null termination of AUTH_MSG_KDC_REQUEST requests, which allows remote attackers to cause a denial of…
PriorityP415medium5CVSS 2.0
AVNACLAuNCNINAP
EPSS
2.28%
81.0th percentile
Kerberos 4 KDC program does not properly check for null termination of AUTH_MSG_KDC_REQUEST requests, which allows remote attackers to cause a denial of service via a malformed request.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cygnus | cygnus_network_security | — | — |
| cygnus | kerbnet | — | — |
| mit | kerberos | — | — |
| mit | kerberos_5 | — | — |
| mit | kerberos_5 | — | — |
| mit | kerberos_5 | — | — |
CVSS provenance
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:N/I:N/A:P
vendor_redhat5.0MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-5pwv-v67v-mf36: Kerberos 4 KDC program does not properly check for null termination of AUTH_MSG_KDC_REQUEST requests, which allows remote attackers to cause a denial
ghsa_unreviewed·2022-04-30
CVE-2000-0549 [MEDIUM] GHSA-5pwv-v67v-mf36: Kerberos 4 KDC program does not properly check for null termination of AUTH_MSG_KDC_REQUEST requests, which allows remote attackers to cause a denial
Kerberos 4 KDC program does not properly check for null termination of AUTH_MSG_KDC_REQUEST requests, which allows remote attackers to cause a denial of service via a malformed request.
Red Hat
security flaw
vendor_redhat·2000-06-09·CVSS 5.0
CVE-2000-0549 [MEDIUM] security flaw
security flaw
Kerberos 4 KDC program does not properly check for null termination of AUTH_MSG_KDC_REQUEST requests, which allows remote attackers to cause a denial of service via a malformed request.
Statement: This issue was fixed in the following product:
- Red Hat Linux 6.2 - RHSA-2000:031 (2000-06-09)
No detection rules found.
No public exploits indexed.
http://archives.neohapsis.com/archives/bugtraq/2000-06/0064.htmlhttp://ciac.llnl.gov/ciac/bulletins/k-051.shtmlhttp://web.mit.edu/kerberos/www/advisories/krb4kdc.txthttp://www.cert.org/advisories/CA-2000-11.htmlhttp://www.redhat.com/support/errata/RHSA-2000-031.htmlhttp://archives.neohapsis.com/archives/bugtraq/2000-06/0064.htmlhttp://ciac.llnl.gov/ciac/bulletins/k-051.shtmlhttp://web.mit.edu/kerberos/www/advisories/krb4kdc.txthttp://www.cert.org/advisories/CA-2000-11.htmlhttp://www.redhat.com/support/errata/RHSA-2000-031.html
2000-06-09
Published