9.3
CVSSv2

CVE-2008-0948

Published: 19/03/2008 Updated: 21/01/2020
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 828
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Buffer overflow in the RPC library (lib/rpc/rpc_dtablesize.c) used by libgssrpc and kadmind in MIT Kerberos 5 (krb5) 1.2.2, and probably other versions prior to 1.3, when running on systems whose unistd.h does not define the FD_SETSIZE macro, allows remote malicious users to cause a denial of service (crash) and possibly execute arbitrary code by triggering a large number of open file descriptors.

Vulnerable Product Search on Vulmon Subscribe to Product

mit kerberos 5 1.2.2