Get a Pentest and security assessment of your IT network.

Advisories

Mandriva Linux Security Advisory 2007.077

Mandriva Linux Security Advisory – A vulnerability was found in the username handling of the MIT krb5 telnet daemon. A remote attacker that could access the telnet port of a target machine could login as root without requiring a password. Buffer overflows in the kadmin server daemon were discovered that could be exploited by a remote attacker able to access the KDC. Successful exploitation could allow for the execution of arbitrary code with the privileges of the KDC or kadmin server processes. Finally, a double-free flaw was discovered in the GSSAPI library used by the kadmin server daemon, which could lead to a denial of service condition or the execution of arbitrary code with the privileges of the KDC or kadmin server processes.

 

You can download this advisory from the following link: https://packetstormsecurity.com/files/download/55669/MDKSA-2007-077.txt

Source: https://packetstormsecurity.com/files/55669/Mandriva-Linux-Security-Advisory-2007.077.html

Related posts
Advisories

Secunia Security Advisory 19451

Advisories

Debian Linux Security Advisory 1187-1

Advisories

Secunia Security Advisory 25148

Advisories

Secunia Security Advisory 28461