7.5

CVE-2008-0063

The Kerberos 4 support in KDC in MIT Kerberos 5 (krb5kdc) does not properly clear the unused portion of a buffer when generating an error message, which might allow remote attackers to obtain sensitive information, aka "Uninitialized stack values."

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
MitKerberos 5 Version <= 1.6.3
ApplemacOS X Version < 10.4.11
ApplemacOS X Version >= 10.5.0 < 10.5.2
ApplemacOS X Server Version < 10.4.11
ApplemacOS X Server Version >= 10.5.0 < 10.5.2
OpensuseOpensuse Version10.2
OpensuseOpensuse Version10.3
SuseLinux Version10.1
SuseLinux Enterprise Desktop Version10 Updatesp1
SuseLinux Enterprise Server Version10 Updatesp1
DebianDebian Linux Version3.1
DebianDebian Linux Version4.0
CanonicalUbuntu Linux Version6.06
CanonicalUbuntu Linux Version6.10
CanonicalUbuntu Linux Version7.04
CanonicalUbuntu Linux Version7.10
FedoraprojectFedora Version7
FedoraprojectFedora Version8
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 4.75% 0.888
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 7.5 3.9 3.6
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
nvd@nist.gov 4.3 8.6 2.9
AV:N/AC:M/Au:N/C:P/I:N/A:N
CWE-908 Use of Uninitialized Resource

The product uses or accesses a resource that has not been initialized.

http://secunia.com/advisories/29420
Vendor Advisory
Broken Link
http://secunia.com/advisories/30535
Vendor Advisory
Broken Link
http://www.securityfocus.com/archive/1/493080/100/0/threaded
Third Party Advisory
Broken Link
VDB Entry
http://secunia.com/advisories/29457
Vendor Advisory
Broken Link
http://www.securityfocus.com/archive/1/489883/100/0/threaded
Third Party Advisory
Broken Link
VDB Entry
http://secunia.com/advisories/29451
Vendor Advisory
Broken Link
http://secunia.com/advisories/29464
Vendor Advisory
Broken Link
http://secunia.com/advisories/29516
Vendor Advisory
Broken Link
http://secunia.com/advisories/29450
Vendor Advisory
Broken Link
http://secunia.com/advisories/29462
Vendor Advisory
Broken Link
http://secunia.com/advisories/29424
Vendor Advisory
Broken Link
http://secunia.com/advisories/29428
Vendor Advisory
Broken Link
http://secunia.com/advisories/29435
Vendor Advisory
Broken Link
http://secunia.com/advisories/29438
Vendor Advisory
Broken Link
http://secunia.com/advisories/29663
Vendor Advisory
Broken Link
http://secunia.com/advisories/29423
Vendor Advisory
Broken Link
http://www.securityfocus.com/archive/1/489761
Third Party Advisory
Broken Link
VDB Entry
http://www.securityfocus.com/bid/28303
Third Party Advisory
Broken Link
VDB Entry
http://www.securitytracker.com/id?1019627
Third Party Advisory
Broken Link
VDB Entry