Exploitation Summary
EIP tracks 1 public exploit for CVE-2001-0034. PoCs published by Jouko Pynnonen.
AI-analyzed exploit summary The exploit describes a vulnerability in KTH Kerberos where the 'krb4_proxy' environment variable can be manipulated to redirect authentication requests to a malicious server, potentially leading to remote root access via a buffer overflow in the Kerberos shared libraries.
Description
KTH Kerberos IV allows local users to specify an alternate proxy using the krb4_proxy variable, which allows the user to generate false proxy responses and possibly gain privileges.
Exploits (1)
The exploit describes a vulnerability in KTH Kerberos where the 'krb4_proxy' environment variable can be manipulated to redirect authentication requests to a malicious server, potentially leading to remote root access via a buffer overflow in the Kerberos shared libraries.