Advisories Blog | G5 Cyber Security

GSS-API Library Null Pointer Dereference

MIT krb5 Security Advisory 2010-005 – Certain invalid GSS-API tokens can cause a GSS-API acceptor (server) to crash due to a null pointer dereference in the GSS-API library. This is an implementation vulnerability in MIT krb5, and not a vulnerability in the Kerberos protocol.

 

You can download this advisory from the following link: https://packetstormsecurity.com/files/download/89681/MITKRB5-SA-2010-005.txt

Source: https://packetstormsecurity.com/files/89681/GSS-API-Library-Null-Pointer-Dereference.html

Exit mobile version