VYPR

rpm package

suse/krb5&distro=SUSE Linux Enterprise Module for Server Applications 15

pkg:rpm/suse/krb5&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Server%20Applications%2015

Vulnerabilities (2)

  • CVE-2018-5730Mar 6, 2018
    affected < 1.15.2-6.6.2fixed 1.15.2-6.6.2

    MIT krb5 1.6 or later allows an authenticated kadmin with permission to add principals to an LDAP Kerberos database to circumvent a DN containership check by supplying both a "linkdn" and "containerdn" database argument, or by supplying a DN string which is a left extension of a

  • CVE-2018-5729Mar 6, 2018
    affected < 1.15.2-6.6.2fixed 1.15.2-6.6.2

    MIT krb5 1.6 or later allows an authenticated kadmin with permission to add principals to an LDAP Kerberos database to cause a denial of service (NULL pointer dereference) or bypass a DN container check by supplying tagged data that is internal to the database module.