CVE-2016-3119: Null Pointer Dereference
The processdbargs function in plugins/kdb/ldap/libkdbldap/ldapprincipal2.c in the LDAP KDB module in kadmind in MIT Kerberos 5 (aka krb5) through 1.13.4 and 1.14.x through 1.14.1 mishandles the DB argument, which allows remote authenticated users to cause a denial of service (NULL pointer dereference and daemon crash) via a crafted request to modify a principal.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2016-3119?
CVE-2016-3119 has been classified as a vulnerability that can result in denial of service.
How do I fix CVE-2016-3119?
To fix CVE-2016-3119, update your MIT Kerberos 5 implementation to the latest version available.
Which software versions are affected by CVE-2016-3119?
CVE-2016-3119 affects MIT Kerberos 5 versions 1.0 through 1.14.1 and specific versions of openSUSE Leap and openSUSE 13.2.
What type of attack does CVE-2016-3119 facilitate?
CVE-2016-3119 allows remote authenticated users to trigger a denial of service condition.
Is there a workaround for CVE-2016-3119?
While the best option is to upgrade, temporarily restricting remote authenticated user access may help mitigate the effects of CVE-2016-3119.