CVE-2014-9423
MIT Kerberos 5 < 1.13.1 - Uninitialized Memory Exposure via svcauth_gss_accept_sec_context
Title source: llmDescription
The svcauth_gss_accept_sec_context function in lib/rpc/svc_auth_gss.c in MIT Kerberos 5 (aka krb5) 1.11.x through 1.11.5, 1.12.x through 1.12.2, and 1.13.x before 1.13.1 transmits uninitialized interposer data to clients, which allows remote attackers to obtain sensitive information from process heap memory by sniffing the network for data in a handle field.
References (13)
Core 13
Core References
Mailing List, Third Party Advisory vendor-advisory
x_refsource_fedora
http://lists.fedoraproject.org/pipermail/package-announce/2015-March/151437.html
Third Party Advisory vendor-advisory
x_refsource_debian
http://www.debian.org/security/2015/dsa-3153
Vendor Advisory vendor-advisory
x_refsource_redhat
http://rhn.redhat.com/errata/RHSA-2015-0439.html
Mailing List vendor-advisory
x_refsource_suse
http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00016.html
Patch x_refsource_confirm
https://github.com/krb5/krb5/commit/5bb8a6b9c9eb8dd22bc9526751610aaa255ead9c
Vendor Advisory vendor-advisory
x_refsource_mandriva
http://www.mandriva.com/security/advisories?name=MDVSA-2015:069
Vendor Advisory vendor-advisory
x_refsource_ubuntu
http://www.ubuntu.com/usn/USN-2498-1
Mailing List vendor-advisory
x_refsource_suse
http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00011.html
Third Party Advisory, VDB Entry vdb-entry
x_refsource_bid
http://www.securityfocus.com/bid/72503
Various Sources x_refsource_confirm
http://web.mit.edu/kerberos/advisories/2015-001-patch-r113.txt
Vendor Advisory x_refsource_confirm
http://web.mit.edu/kerberos/advisories/MITKRB5-SA-2015-001.txt
Mailing List, Third Party Advisory vendor-advisory
x_refsource_fedora
http://lists.fedoraproject.org/pipermail/package-announce/2015-March/151103.html
Mailing List vendor-advisory
x_refsource_suse
http://lists.opensuse.org/opensuse-updates/2015-02/msg00044.html
Scores
EPSS
0.0154
EPSS Percentile
81.6%
Details
CWE
CWE-200
Status
published
Products (10)
mit/kerberos_5
1.11
mit/kerberos_5
1.11.1
mit/kerberos_5
1.11.2
mit/kerberos_5
1.11.3
mit/kerberos_5
1.11.4
mit/kerberos_5
1.11.5
mit/kerberos_5
1.12
mit/kerberos_5
1.12.1
mit/kerberos_5
1.12.2
mit/kerberos_5
1.13
Published
Feb 19, 2015
Tracked Since
Feb 18, 2026