Juniper Networks
Solutions
Products & Services
Company
Partners
Support
Education

Signature Detail

Security Intelligence Center
Signatures
Print

This site is deprecated. Please CLICK HERE for latest updates

Short Name

APP:KERBEROS:KRB5-DOS

Severity

Minor

Recommended

No

Category

APP

Keywords

MIT Kerberos Denial of Service

Release Date

2011/06/01

Update Number

1929

Supported Platforms

idp-4.0+, isg-3.0+, j-series-9.5+, mx-11.4+, srx-12.1+, srx-branch-12.1+, vmx-17.4+, vsrx-12.1+, vsrx3bsd-18.2+

APP: MIT Kerberos Denial of Service


This signature detects attempts to exploit a known vulnerability against MIT Kerberos. A successful attack can result in a denial-of-service condition.

Extended Description

MIT Kerberos is prone to a remote code-execution vulnerability in 'kadmind'. An attacker may exploit this issue to execute arbitrary code with superuser privileges. Failed attempts will cause the affected application to crash, denying service to legitimate users. A successful exploit will completely compromise affected computers. MIT Kerberos 5 1.7 and later are vulnerable. NOTE (April 13, 2011): This BID was originally titled 'MIT Kerberos kadmind Version String Processing Remote Denial Of Service Vulnerability', but has been renamed to better reflect the nature of the issue.

Affected Products

  • Debian linux 5.0
  • Debian linux 5.0 Alpha
  • Debian linux 5.0 Amd64
  • Debian linux 5.0 Arm
  • Debian linux 5.0 Armel
  • Debian linux 5.0 Hppa
  • Debian linux 5.0 Ia-32
  • Debian linux 5.0 Ia-64
  • Debian linux 5.0 M68k
  • Debian linux 5.0 Mips
  • Debian linux 5.0 Mipsel
  • Debian linux 5.0 Powerpc
  • Debian linux 5.0 S/390
  • Debian linux 5.0 Sparc
  • Gentoo linux
  • Mandriva enterprise_server 5
  • Mandriva enterprise_server 5 X86 64
  • Mandriva linux_mandrake 2010.1
  • Mandriva linux_mandrake 2010.1 X86 64
  • Mit kerberos_5 1.7
  • Mit kerberos_5 1.7.1
  • Mit kerberos_5 1.7.2
  • Mit kerberos_5 1.8
  • Mit kerberos_5 1.8.1
  • Mit kerberos_5 1.8.2
  • Mit kerberos_5 1.8.3
  • Mit kerberos_5 1.8.4
  • Mit kerberos_5 1.9
  • Mit kerberos_5 5-1.7
  • Mit kerberos_5 5-1.7.1
  • Mit kerberos_5 5-1.8
  • Mit kerberos_5 5-1.8.1
  • Mit kerberos_5 5-1.8.2
  • Mit kerberos_5 5-1.8.3
  • Mit kerberos_5 5-1.9
  • Red_hat enterprise_linux_desktop 6
  • Red_hat enterprise_linux_desktop_optional 6
  • Red_hat enterprise_linux_hpc_node 6
  • Red_hat enterprise_linux_hpc_node_optional 6
  • Red_hat enterprise_linux_server 6
  • Red_hat enterprise_linux_workstation 6
  • Red_hat fedora 13
  • Red_hat fedora 14
  • Red_hat fedora 15
  • Suse opensuse 11.2
  • Suse opensuse 11.3
  • Suse opensuse 11.4
  • Ubuntu ubuntu_linux 10.04 Amd64
  • Ubuntu ubuntu_linux 10.04 ARM
  • Ubuntu ubuntu_linux 10.04 I386
  • Ubuntu ubuntu_linux 10.04 LTS
  • Ubuntu ubuntu_linux 10.04 Powerpc
  • Ubuntu ubuntu_linux 10.04 Sparc
  • Ubuntu ubuntu_linux 10.10 amd64
  • Ubuntu ubuntu_linux 10.10 ARM
  • Ubuntu ubuntu_linux 10.10 i386
  • Ubuntu ubuntu_linux 10.10 powerpc
  • Ubuntu ubuntu_linux 9.10
  • Ubuntu ubuntu_linux 9.10 Amd64
  • Ubuntu ubuntu_linux 9.10 ARM
  • Ubuntu ubuntu_linux 9.10 I386
  • Ubuntu ubuntu_linux 9.10 Lpia
  • Ubuntu ubuntu_linux 9.10 Powerpc
  • Ubuntu ubuntu_linux 9.10 Sparc

References

  • BugTraq: 47310
  • URL: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=621726
  • URL: http://web.mit.edu/kerberos/www/

Site Map
RSS Feeds
Careers
Accessibility
Feedback
Privacy Policy
Legal Notices
Copyright © 1999-2010 Juniper Networks, Inc. All rights reserved.
Help
|
My Account
|
Log Out