Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2007-4743
Description:The original patch for CVE-2007-3999 in svc_auth_gss.c in the RPCSEC_GSS RPC library in MIT Kerberos 5 (krb5) 1.4 through 1.6.2, as used by the Kerberos administration daemon (kadmind) and other applications that use krb5, does not correctly check the buffer length in some environments and architectures, which might allow remote attackers to conduct a buffer overflow attack.
Test IDs: 1.3.6.1.4.1.25623.1.0.58670   1.3.6.1.4.1.25623.1.0.840163   1.3.6.1.4.1.25623.1.0.59201  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2007-4743
20070906 rPSA-2007-0179-1 krb5 krb5-server krb5-services krb5-test krb5-workstation
http://www.securityfocus.com/archive/1/478748/100/0/threaded
20070907 FLEA-2007-0050-1 krb5 krb5-workstation
http://www.securityfocus.com/archive/1/478794/100/0/threaded
26444
http://www.securityfocus.com/bid/26444
26699
http://secunia.com/advisories/26699
26987
http://secunia.com/advisories/26987
27643
http://secunia.com/advisories/27643
ADV-2007-3868
http://www.vupen.com/english/advisories/2007/3868
APPLE-SA-2007-11-14
http://lists.apple.com/archives/security-announce/2007/Nov/msg00002.html
DSA-1387
http://www.debian.org/security/2007/dsa-1387
RHSA-2007:0892
http://www.redhat.com/support/errata/RHSA-2007-0892.html
SUSE-SR:2007:019
http://www.novell.com/linux/security/advisories/2007_19_sr.html
TA07-319A
http://www.us-cert.gov/cas/techalerts/TA07-319A.html
USN-511-2
http://www.ubuntu.com/usn/usn-511-2
http://article.gmane.org/gmane.comp.encryption.kerberos.announce/86
http://article.gmane.org/gmane.comp.encryption.kerberos.announce/86
http://docs.info.apple.com/article.html?artnum=307041
http://docs.info.apple.com/article.html?artnum=307041
https://issues.rpath.com/browse/RPL-1696
https://issues.rpath.com/browse/RPL-1696
oval:org.mitre.oval:def:10239
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10239




© 1998-2025 E-Soft Inc. All rights reserved.