10
CVSSv2

CVE-2011-0285

Published: 15/04/2011 Updated: 21/01/2020
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 1000
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

The process_chpw_request function in schpw.c in the password-changing functionality in kadmind in MIT Kerberos 5 (aka krb5) 1.7 up to and including 1.9 frees an invalid pointer, which allows remote malicious users to execute arbitrary code or cause a denial of service (daemon crash) via a crafted request that triggers an error condition.

Vulnerable Product Search on Vulmon Subscribe to Product

mit kerberos 5 1.8

mit kerberos 5 1.8.2

mit kerberos 5 1.8.3

mit kerberos 5 1.9

mit kerberos 5 1.8.1

mit kerberos 5 1.7

mit kerberos 5 1.7.1

Vendor Advisories

An unauthenticated remote user could crash the Kerberos service ...

Exploits

source: wwwsecurityfocuscom/bid/47310/info MIT Kerberos is prone to a remote code-execution vulnerability in 'kadmind' An attacker may exploit this issue to execute arbitrary code with superuser privileges Failed attempts will cause the affected application to crash, denying service to legitimate users A successful exploit will comple ...