Description
The Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) 1.7 before 1.7.2, and 1.8 alpha, allows remote attackers to cause a denial of service (assertion failure and daemon crash) via an invalid (1) AS-REQ or (2) TGS-REQ request.
CVSS vector
AV:N/AC:L/C:N/I:N/A:CExploitability: 10.0 | Impact: 6.9Complexity: Low
Confidentiality: None
Integrity: None
Affected Packages3 packages
🔴Vulnerability Details
3GHSAGHSA-jwfx-h8qj-v94c: The Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) 1↗2022-05-02 ▶ OSVCVE-2010-0283: The Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) 1↗2010-02-22 ▶ CVEListCVE-2010-0283: The Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) 1↗2010-02-21 ▶ 📋Vendor Advisories
4Red Hatkernel: possible kernel oops from user MSS↗2010-11-10 ▶ UbuntuKerberos vulnerabilities↗2010-03-23 ▶ Red Hatkrb5 KDC denial of service↗2010-02-16 ▶ DebianCVE-2010-0283: krb5 - The Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) 1.7 before 1.7.2,...↗2010 ▶ 💬Community
1BugzillaCVE-2010-0283 krb5 KDC denial of service↗2010-01-19 ▶