CVE-1999-1296

MIT Kerberos 5 - Local Privilege Escalation via KRB_CONF Environment Variable

Title source: llm
STIX 2.1

Description

Buffer overflow in Kerberos IV compatibility libraries as used in Kerberos V allows local users to gain root privileges via a long line in a kerberos configuration file, which can be specified via the KRB_CONF environmental variable.

References (1)

Core 1
Core References
Mailing List mailing-list x_refsource_bugtraq
http://marc.info/?l=bugtraq&m=87602167420878&w=2

Scores

EPSS 0.0006
EPSS Percentile 19.7%

Details

Status published
Products (1)
mit/kerberos_5 1.5.2
Published Apr 29, 1997
Tracked Since Feb 18, 2026