CVE-2008-0947

Publication date 19 March 2008

Last updated 24 July 2024


Ubuntu priority

Buffer overflow in the RPC library used by libgssrpc and kadmind in MIT Kerberos 5 (krb5) 1.4 through 1.6.3 allows remote attackers to execute arbitrary code by triggering a large number of open file descriptors.

Status

Package Ubuntu Release Status
krb5 7.10 gutsy
Fixed 1.6.dfsg.1-7ubuntu0.1
7.04 feisty
Fixed 1.4.4-5ubuntu3.4
6.10 edgy
Fixed 1.4.3-9ubuntu1.6
6.06 LTS dapper
Fixed 1.4.3-5ubuntu0.7

References

Related Ubuntu Security Notices (USN)

    • USN-587-1
    • Kerberos vulnerabilities
    • 19 March 2008

Other references