First published: Tue May 16 2000(Updated: )
Buffer overflow in krb_rd_req function in Kerberos 4 and 5 allows remote attackers to gain root privileges.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Cygnus Network Security | =4.0 | |
Kerbnet | =5.0 | |
Kerberos | =4.0 | |
Kerberos | =1.0 | |
Kerberos | =1.1.1 | |
Red Hat Linux | =6.2 | |
Red Hat Linux | =6.2 | |
Red Hat Linux | =6.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2000-0389 has a high severity rating due to the potential for remote attackers to gain root privileges through a buffer overflow.
To fix CVE-2000-0389, update the affected versions of Kerberos to the latest patches provided by the vendor.
CVE-2000-0389 affects Kerberos 4 and 5, particularly versions from Cygnus and MIT, as well as Red Hat Linux 6.2.
Exploiting CVE-2000-0389 requires access to the vulnerable services running Kerberos, which can lead to elevated privileges for attackers.
Symptoms of exploitation for CVE-2000-0389 may include unexpected crashes, unauthorized access to services, or unusual user activity.