First published: Wed Feb 19 2003(Updated: )
Unknown vulnerability in the chk_trans.c of the libkrb5 library for MIT Kerberos V5 before 1.2.5 allows users from one realm to impersonate users in other realms that have the same inter-realm keys.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
MIT Kerberos 5 | =1.2.1 | |
MIT Kerberos 5 | =1.2.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2003-0059 is classified as a medium severity vulnerability due to its potential for user impersonation across realms.
To fix CVE-2003-0059, upgrade to MIT Kerberos V5 version 1.2.5 or later.
CVE-2003-0059 affects MIT Kerberos V5 versions 1.2.1 and 1.2.2.
CVE-2003-0059 is an impersonation vulnerability that allows user impersonation between realms.
There are no widely reported exploits specifically for CVE-2003-0059, but the vulnerability poses a significant risk.