CVE-2008-0063
The Kerberos 4 support in KDC in MIT Kerberos 5 (krb5kdc) does not properly clear the unused portion of a buffer when generating an error message, which might allow remote attackers to obtain sensitive information, aka "Uninitialized stack values."
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (3.48%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
The Kerberos 4 support in KDC in MIT Kerberos 5 (krb5kdc) does not properly clear the unused portion of a buffer when generating an error message, which might allow remote attackers to obtain sensitive information, aka "Uninitialized stack values."
- CVSS 3.1
- 7.5 HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
- EPSS
- 3.48% probability · 88th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-908
- Affected
- mit/kerberos 5 · apple/mac os x · apple/mac os x server · opensuse/opensuse · suse/linux · suse/linux enterprise desktop · suse/linux enterprise server · suse/linux enterprise software development kit · debian/debian linux · canonical/ubuntu linux · fedoraproject/fedora
- Source
- cve@mitre.org
References
- http://docs.info.apple.com/article.html?artnum=307562Broken Link
- http://lists.apple.com/archives/security-announce/2008/Mar/msg00001.htmlMailing List
- http://lists.opensuse.org/opensuse-security-announce/2008-03/msg00006.htmlMailing List
- http://secunia.com/advisories/29420Broken Link, Vendor Advisory
- http://secunia.com/advisories/29423Broken Link, Vendor Advisory
- http://secunia.com/advisories/29424Broken Link, Vendor Advisory
- http://secunia.com/advisories/29428Broken Link, Vendor Advisory
- http://secunia.com/advisories/29435Broken Link, Vendor Advisory
- http://secunia.com/advisories/29438Broken Link, Vendor Advisory
- http://secunia.com/advisories/29450Broken Link, Vendor Advisory
- http://secunia.com/advisories/29451Broken Link, Vendor Advisory
- http://secunia.com/advisories/29457Broken Link, Vendor Advisory
- http://secunia.com/advisories/29462Broken Link, Vendor Advisory
- http://secunia.com/advisories/29464Broken Link, Vendor Advisory
- http://secunia.com/advisories/29516Broken Link, Vendor Advisory
- http://secunia.com/advisories/29663Broken Link, Vendor Advisory
- http://secunia.com/advisories/30535Broken Link, Vendor Advisory
- http://support.novell.com/docs/Readmes/InfoDocument/patchbuilder/readme_5022520.htmlBroken Link
- http://support.novell.com/docs/Readmes/InfoDocument/patchbuilder/readme_5022542.htmlBroken Link
- http://web.mit.edu/kerberos/advisories/MITKRB5-SA-2008-001.txtThird Party Advisory
- http://wiki.rpath.com/Advisories:rPSA-2008-0112Broken Link
- http://wiki.rpath.com/wiki/Advisories:rPSA-2008-0112Broken Link
- http://www.debian.org/security/2008/dsa-1524Third Party Advisory
- http://www.gentoo.org/security/en/glsa/glsa-200803-31.xmlThird Party Advisory
- http://www.mandriva.com/security/advisories?name=MDVSA-2008:069Patch, Third Party Advisory
- http://www.mandriva.com/security/advisories?name=MDVSA-2008:070Patch, Third Party Advisory
- http://www.mandriva.com/security/advisories?name=MDVSA-2008:071Patch, Third Party Advisory
- http://www.redhat.com/support/errata/RHSA-2008-0164.htmlBroken Link
- http://www.redhat.com/support/errata/RHSA-2008-0180.htmlBroken Link
- http://www.redhat.com/support/errata/RHSA-2008-0181.htmlBroken Link
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.