CVE-2010-0629
published 2010-04-07CVE-2010-0629: Use-after-free vulnerability in kadmin/server/server_stubs.c in kadmind in MIT Kerberos 5 (aka krb5) 1.5 through 1.6.3 allows remote authenticated users to…
PriorityP427medium6.5CVSS 3.1
AVNACLPRLUINSUCNINAH
EPSS
5.47%
91.9th percentile
Use-after-free vulnerability in kadmin/server/server_stubs.c in kadmind in MIT Kerberos 5 (aka krb5) 1.5 through 1.6.3 allows remote authenticated users to cause a denial of service (daemon crash) via a request from a kadmin client that sends an invalid API version number.
Affected
13 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| debian | krb5 | < krb5 1.7+dfsg-1 (bookworm) | krb5 1.7+dfsg-1 (bookworm) |
| fedoraproject | fedora | — | — |
| mit | kerberos_5 | 1.5 – 1.6.3 | — |
| mit | krb5 | >= 0 < 1.7+dfsg-1 | 1.7+dfsg-1 |
| mit | krb5 | >= 0 < 1.7+dfsg-1 | 1.7+dfsg-1 |
| mit | krb5 | >= 0 < 1.7+dfsg-1 | 1.7+dfsg-1 |
| mit | krb5 | >= 0 < 1.7+dfsg-1 | 1.7+dfsg-1 |
| opensuse | opensuse | — | — |
| opensuse | opensuse | — | — |
| suse | linux_enterprise | — | — |
CVSS provenance
nvdv3.16.5MEDIUMCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
nvdv2.04.0MEDIUMAV:N/AC:L/Au:S/C:N/I:N/A:P
osv6.5MEDIUM
vendor_ubuntu6.9MEDIUM
vendor_debian6.5LOW
vendor_redhat6.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-6243-f9c4-77f4: Use-after-free vulnerability in kadmin/server/server_stubs
ghsa_unreviewed·2022-05-02
CVE-2010-0629 [MEDIUM] CWE-416 GHSA-6243-f9c4-77f4: Use-after-free vulnerability in kadmin/server/server_stubs
Use-after-free vulnerability in kadmin/server/server_stubs.c in kadmind in MIT Kerberos 5 (aka krb5) 1.5 through 1.6.3 allows remote authenticated users to cause a denial of service (daemon crash) via a request from a kadmin client that sends an invalid API version number.
OSV
CVE-2010-0629: Use-after-free vulnerability in kadmin/server/server_stubs
osv·2010-04-07·CVSS 6.5
CVE-2010-0629 [MEDIUM] CVE-2010-0629: Use-after-free vulnerability in kadmin/server/server_stubs
Use-after-free vulnerability in kadmin/server/server_stubs.c in kadmind in MIT Kerberos 5 (aka krb5) 1.5 through 1.6.3 allows remote authenticated users to cause a denial of service (daemon crash) via a request from a kadmin client that sends an invalid API version number.
Ubuntu
Kerberos vulnerabilities
vendor_ubuntu·2010-04-07·CVSS 6.9
CVE-2007-5901 [MEDIUM] Kerberos vulnerabilities
Title: Kerberos vulnerabilities
Summary: Kerberos vulnerabilities
Sol Jerome discovered that the Kerberos kadmind service did not correctly
free memory. An unauthenticated remote attacker could send specially
crafted traffic to crash the kadmind process, leading to a denial of
service. (CVE-2010-0629)
It was discovered that Kerberos did not correctly free memory in
the GSSAPI library. If a remote attacker were able to manipulate an
application using GSSAPI carefully, the service could crash, leading to
a denial of service. (Ubuntu 8.10 was not affected.) (CVE-2007-5901,
CVE-2007-5971)
It was discovered that Kerberos did not correctly free memory in the
GSSAPI and kdb libraries. If a remote attacker were able to manipulate
an application using these libraries carefully, the service coul
Red Hat
krb5: kadmind use-after-free remote crash (MITKRB5-SA-2010-003)
vendor_redhat·2010-01-26·CVSS 6.5
CVE-2010-0629 [MEDIUM] CWE-416 krb5: kadmind use-after-free remote crash (MITKRB5-SA-2010-003)
krb5: kadmind use-after-free remote crash (MITKRB5-SA-2010-003)
Use-after-free vulnerability in kadmin/server/server_stubs.c in kadmind in MIT Kerberos 5 (aka krb5) 1.5 through 1.6.3 allows remote authenticated users to cause a denial of service (daemon crash) via a request from a kadmin client that sends an invalid API version number.
Debian
CVE-2010-0629: krb5 - Use-after-free vulnerability in kadmin/server/server_stubs.c in kadmind in MIT K...
vendor_debian·2010·CVSS 6.5
CVE-2010-0629 [MEDIUM] CVE-2010-0629: krb5 - Use-after-free vulnerability in kadmin/server/server_stubs.c in kadmind in MIT K...
Use-after-free vulnerability in kadmin/server/server_stubs.c in kadmind in MIT Kerberos 5 (aka krb5) 1.5 through 1.6.3 allows remote authenticated users to cause a denial of service (daemon crash) via a request from a kadmin client that sends an invalid API version number.
Scope: local
bookworm: resolved (fixed in 1.7+dfsg-1)
bullseye: resolved (fixed in 1.7+dfsg-1)
forky: resolved (fixed in 1.7+dfsg-1)
sid: resolved (fixed in 1.7+dfsg-1)
trixie: resolved (fixed in 1.7+dfsg-1)
No detection rules found.
No public exploits indexed.
http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=567052http://krbdev.mit.edu/rt/Ticket/Display.html?id=5998http://lists.fedoraproject.org/pipermail/package-announce/2010-April/038556.htmlhttp://lists.opensuse.org/opensuse-security-announce/2010-04/msg00002.htmlhttp://secunia.com/advisories/39264http://secunia.com/advisories/39290http://secunia.com/advisories/39315http://secunia.com/advisories/39324http://secunia.com/advisories/39367http://securitytracker.com/id?1023821http://ubuntu.com/usn/usn-924-1http://web.mit.edu/kerberos/advisories/MITKRB5-SA-2010-003.txthttp://www.debian.org/security/2010/dsa-2031http://www.mandriva.com/security/advisories?name=MDVSA-2010:071http://www.redhat.com/support/errata/RHSA-2010-0343.htmlhttp://www.securityfocus.com/archive/1/510566/100/0/threadedhttp://www.securityfocus.com/bid/39247http://www.vupen.com/english/advisories/2010/0876https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9489http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=567052http://krbdev.mit.edu/rt/Ticket/Display.html?id=5998http://lists.fedoraproject.org/pipermail/package-announce/2010-April/038556.htmlhttp://lists.opensuse.org/opensuse-security-announce/2010-04/msg00002.htmlhttp://secunia.com/advisories/39264http://secunia.com/advisories/39290http://secunia.com/advisories/39315http://secunia.com/advisories/39324http://secunia.com/advisories/39367http://securitytracker.com/id?1023821http://ubuntu.com/usn/usn-924-1http://web.mit.edu/kerberos/advisories/MITKRB5-SA-2010-003.txthttp://www.debian.org/security/2010/dsa-2031http://www.mandriva.com/security/advisories?name=MDVSA-2010:071http://www.redhat.com/support/errata/RHSA-2010-0343.htmlhttp://www.securityfocus.com/archive/1/510566/100/0/threadedhttp://www.securityfocus.com/bid/39247http://www.vupen.com/english/advisories/2010/0876https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9489
2010-04-07
Published