Summary: |
VUL-1: CVE-2018-5709: krb5: An issue was discovered in MIT Kerberos 5 (aka krb5) through 1.16. There is avariable "dbentry->n_key_data" in kadmin/dbutil/dump.c that can store 16-bitdata but unknowingly the developer has assigned a "u4" va |
Product: |
[Novell Products] SUSE Security Incidents
|
Reporter: |
Marcus Meissner <meissner> |
Component: |
Incidents | Assignee: |
Security Team bot <security-team> |
Status: |
RESOLVED
INVALID
|
QA Contact: |
Security Team bot <security-team> |
Severity: |
Normal
|
|
|
Priority: |
P4 - Low
|
CC: |
abergmann, astieger, david.mulder, meissner, samba-maintainers, scabrero, security-team, smash_bz
|
Version: |
unspecified | |
|
Target Milestone: |
--- | |
|
Hardware: |
Other | |
|
OS: |
Other | |
|
URL: |
https://smash.suse.de/issue/198323/
|
Whiteboard: |
CVSSv3:SUSE:CVE-2018-5709:5.3:(AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L) maint:planned:update |
Found By:
|
Security Response Team |
Services Priority:
|
|
Business Priority:
|
|
Blocker:
|
--- |
Marketing QA Status:
|
--- |
IT Deployment:
|
--- |
Bug Depends on: |
|
|
|
Bug Blocks: |
1132051
|
|
|