7.8
CVSSv2

CVE-2010-0283

Published: 22/02/2010 Updated: 21/01/2020
CVSS v2 Base Score: 7.8 | Impact Score: 6.9 | Exploitability Score: 10
VMScore: 694
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:C

Vulnerability Summary

The Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) 1.7 prior to 1.7.2, and 1.8 alpha, allows remote malicious users to cause a denial of service (assertion failure and daemon crash) via an invalid (1) AS-REQ or (2) TGS-REQ request.

Vulnerable Product Search on Vulmon Subscribe to Product

mit kerberos 5 1.7.1

mit kerberos 5-1.8

mit kerberos 5 1.7

Vendor Advisories

Emmanuel Bouillon discovered that Kerberos did not correctly handle certain message types An unauthenticated remote attacker could send specially crafted traffic to cause the KDC to crash, leading to a denial of service (CVE-2010-0283) ...