CVE-2009-1384: Medium severity red hat enterprise linux vulnerability
A security flaw was found in PAM pamkrb5 module, providing user authentication based on Kerberos principals. A remote attacker could use this flaw to recognize, if some username/login belongs to set of user accounts, existing on the system, and subsequently perform dictionary based password guess attack.
Other sources
pamkrb5 2.2.14 through 2.3.4, as used in Red Hat Enterprise Linux (RHEL) 5, generates different password prompts depending on whether the user account exists, which allows remote attackers to enumerate valid usernames.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2009-1384?
CVE-2009-1384 is considered a moderate severity vulnerability due to the potential for remote attackers to discern valid usernames.
How do I fix CVE-2009-1384?
To mitigate CVE-2009-1384, update the pam_krb5 module to a secure version that addresses this issue.
What are the affected versions in CVE-2009-1384?
CVE-2009-1384 primarily affects pam_krb5 module versions 2.2.14, 2.3, and 2.3.4.
Can CVE-2009-1384 be exploited remotely?
Yes, CVE-2009-1384 can be exploited remotely by an attacker who performs dictionary attacks on the authentication system.
What systems are affected by CVE-2009-1384?
CVE-2009-1384 affects systems using specific versions of the pam_krb5 module for user authentication.