CVE-2007-5971: Double Free
Published Dec 6, 2007
·Updated
Double free vulnerability in the gsskrb5intmakesealtokenv3 function in lib/gssapi/krb5/k5sealv3.c in MIT Kerberos 5 (krb5) has unknown impact and attack vectors.
Affected Software
5 affected components
Apple iOS and macOS=10.4.11
Apple iOS and macOS=10.5.2
Apple Mac OS X Server=10.4.11
Apple Mac OS X Server=10.5.2
mit Kerberos 5<=1.6.3_kdc
Remediation
Patch Available
Event History
Dec 6, 2007
CVE Published
via MITRE·02:00 AM
Data Sourced
via MITRE·02:00 AM
Description
Data Sourced
02:46 AM
DescriptionWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2007-5971?
The severity of CVE-2007-5971 is currently unknown as it involves a double free vulnerability with unspecified impact and attack vectors.
2
What software is affected by CVE-2007-5971?
CVE-2007-5971 affects MIT Kerberos 5 versions up to and including 1.6.3_kdc.
3
How do I fix CVE-2007-5971?
To fix CVE-2007-5971, update to a version of MIT Kerberos 5 that is beyond 1.6.3_kdc.
4
Can CVE-2007-5971 be exploited remotely?
The specific attack vectors for CVE-2007-5971 are not defined, making it unclear if it can be exploited remotely.
5
What are the potential consequences of CVE-2007-5971?
The consequences of CVE-2007-5971 remain unspecified due to the lack of detail on its impact and exploitation scenarios.