VulnerabilityModified
CVE-2007-0956
The telnet daemon (telnetd) in MIT krb5 before 1.6.1 allows remote attackers to bypass authentication and gain system access via a username beginning with a '-' character, a similar issue to CVE-2007-0882.
HIGH 10.0EPSS 29.8%
Does this matter?
EPSS puts the probability of exploitation in the next 30 days at 29.8%, higher than 98% of all known CVEs. Patch or mitigate before the next change window.
Description
The telnet daemon (telnetd) in MIT krb5 before 1.6.1 allows remote attackers to bypass authentication and gain system access via a username beginning with a '-' character, a similar issue to CVE-2007-0882.
- CVSS 2.0
- 10.0 HIGHAV:N/AC:L/Au:N/C:C/I:C/A:C
- EPSS
- 29.84% probability · 98th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-306
- Affected
- mit/kerberos 5 · debian/debian linux · canonical/ubuntu linux
- Source
- cve@mitre.org
References
- ftp://patches.sgi.com/support/free/security/advisories/20070401-01-P.ascBroken Link
- http://lists.suse.com/archive/suse-security-announce/2007-Apr/0001.htmlBroken Link
- http://secunia.com/advisories/24706Third Party Advisory
- http://secunia.com/advisories/24735Third Party Advisory
- http://secunia.com/advisories/24736Third Party Advisory
- http://secunia.com/advisories/24740Third Party Advisory
- http://secunia.com/advisories/24750Third Party Advisory
- http://secunia.com/advisories/24755Third Party Advisory
- http://secunia.com/advisories/24757Third Party Advisory
- http://secunia.com/advisories/24785Third Party Advisory
- http://secunia.com/advisories/24786Third Party Advisory
- http://secunia.com/advisories/24817Third Party Advisory
- http://security.gentoo.org/glsa/glsa-200704-02.xmlThird Party Advisory
- http://sunsolve.sun.com/search/document.do?assetkey=1-26-102867-1Broken Link
- http://web.mit.edu/kerberos/www/advisories/MITKRB5-SA-2007-001-telnetd.txtVendor Advisory
- http://www.debian.org/security/2007/dsa-1276Third Party Advisory
- http://www.kb.cert.org/vuls/id/220816Third Party Advisory, US Government Resource
- http://www.mandriva.com/security/advisories?name=MDKSA-2007:077Third Party Advisory
- http://www.redhat.com/support/errata/RHSA-2007-0095.htmlThird Party Advisory
- http://www.securityfocus.com/archive/1/464590/100/0/threadedThird Party Advisory, VDB Entry
- http://www.securityfocus.com/archive/1/464666/100/0/threadedThird Party Advisory, VDB Entry
- http://www.securityfocus.com/archive/1/464814/30/7170/threadedThird Party Advisory, VDB Entry
- http://www.securityfocus.com/bid/23281Third Party Advisory, VDB Entry
- http://www.securitytracker.com/id?1017848Third Party Advisory, VDB Entry
- http://www.ubuntu.com/usn/usn-449-1Third Party Advisory
- http://www.us-cert.gov/cas/techalerts/TA07-093B.htmlThird Party Advisory, US Government Resource
- http://www.vupen.com/english/advisories/2007/1218Third Party Advisory
- http://www.vupen.com/english/advisories/2007/1249Third Party Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/33414Third Party Advisory, VDB Entry
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10046Broken Link, Third Party Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.