Free and open-source vulnerability scanner

Mageni eases for you the vulnerability scanning, assessment, and management process. It is free and open-source.

Install Now

Available for macOS, Windows, and Linux

App screenshot

SuSE Update for krb5 SUSE-SA:2007:038

Information

Severity

Severity

Critical

Family

Family

SuSE Local Security Checks

CVSSv2 Base

CVSSv2 Base

9.3

CVSSv2 Vector

CVSSv2 Vector

AV:N/AC:M/Au:N/C:C/I:C/A:C

Solution Type

Solution Type

Vendor Patch

Created

Created

15 years ago

Modified

Modified

6 years ago

Summary

Check for the Version of krb5

Insight

Insight

The KRB5 libraries and utilities contained two security problems for which updates were released. - CVE-2007-2798: A stack-based buffer overflow in kadmind was fixed which can be exploited by authenticated remote users to gain root. This requires kadmind to run to be effective. - CVE-2007-2443: Additionally two bugs in the RPC library of kadmind were fixed that can lead to remote system compromise. Note that third-party applications using this RPC library are vulnerable too.

Affected Software

Affected Software

krb5 on SUSE LINUX 10.1, openSUSE 10.2, SUSE Linux Enterprise Desktop 10 SP1, SLE SDK 10 SP1, SUSE Linux Enterprise Server 10 SP1

Solution

Solution

Please Install the Updated Packages.

Common Vulnerabilities and Exposures (CVE)