Release date:
Updated on: 2012-08-01
Affected Systems:
Debian Linux
MIT Kerberos 5 1.8.x
MIT Kerberos 5 1.8.x
MIT Kerberos 5 1.8.x
MIT Kerberos 5 1.10.2
MIT Kerberos 5 1.10.2
MIT Kerberos 5 1.10.2
MIT Kerberos 5 1.10.1
MIT Kerberos 5 1.10.1
MIT Kerberos 5 1.10.1
RedHat Linux
Description:
--------------------------------------------------------------------------------
Bugtraq id: 54750
Cve id: CVE-2012-1014, CVE-2012-1015
Kerberos is a widely used super-powerful encryption to verify the network protocol between the client and the server.
Multiple Remote Denial-of-Service vulnerabilities exist in MIT Kerberos 5. Attackers can exploit this vulnerability to affect affected services and cause denial-of-service (DoS) attacks.
<* Source: vendor
Emmanuel Bouillon
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
MIT
---
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Http://web.mit.edu/kerberos/www/advisories/index.html