The transit path validation code in Heimdal prior to 7.3 might allow malicious users to bypass the capath policy protection mechanism by leveraging failure to add the previous hop realm to the transit path of issued tickets.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
heimdal project heimdal |
||
opensuse leap 42.2 |
||
opensuse leap 42.3 |