First published: Mon Aug 28 2017(Updated: )
The transit path validation code in Heimdal before 7.3 might allow attackers to bypass the capath policy protection mechanism by leveraging failure to add the previous hop realm to the transit path of issued tickets.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Heimdal Project Heimdal | <=7.2.0 | |
openSUSE Leap | =42.2 | |
openSUSE Leap | =42.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.