Mandriva Linux Security Advisory – David Coffey discovered an uninitialized pointer free flaw in the RPC library used by kadmind. A remote unauthenticated attacker who could access kadmind could trigger the flaw causing kadmind to crash or possibly execute arbitrary code. David Coffey also discovered an overflow flaw in the same RPC library. A remote unauthenticated attacker who could access kadmind could trigger the flaw causing kadmind to crash or possibly execute arbitrary code. Finally, a stack buffer overflow vulnerability was found in kadmind that allowed an unauthenticated user able to access kadmind the ability to trigger the vulnerability and possibly execute arbitrary code.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/57369/MDKSA-2007-137.txt
Source: https://packetstormsecurity.com/files/57369/Mandriva-Linux-Security-Advisory-2007.137.html

