Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2016-4745
Description:The Kerberos 5 (aka krb5) PAM module in Apple OS X before 10.12 does not use constant-time operations for determining username validity, which makes it easier for remote attackers to enumerate user accounts via a timing side-channel attack.
Test IDs: None available
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2016-4745
http://lists.apple.com/archives/security-announce/2016/Sep/msg00006.html
BugTraq ID: 93055
http://www.securityfocus.com/bid/93055
http://www.securitytracker.com/id/1036858




© 1998-2025 E-Soft Inc. All rights reserved.