REDHAT-BUG-490634: Null Pointer Dereference
A null pointer dereference flaw was found in Kerberos's GSS-API spnego security mechanism implemenation. A local user could use this flaw to cause a denial of service (krb5 daemon crash) via invalid ContextFlags for the reqFlags field in the NegTokenInit (RFC 4178).
References: http://krbdev.mit.edu/rt/Ticket/Display.html?user=guest&pass=guest&id=6402
Upstream patch: http://src.mit.edu/fisheye/changelog/krb5/?cs=22099
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-490634?
REDHAT-BUG-490634 is classified as a denial of service vulnerability that could crash the krb5 daemon.
How do I fix REDHAT-BUG-490634?
To fix REDHAT-BUG-490634, update the MIT Kerberos software to the latest patched version available.
Who is affected by REDHAT-BUG-490634?
Local users of MIT Kerberos are affected by REDHAT-BUG-490634 due to the flaw in the GSS-API spnego implementation.
What does REDHAT-BUG-490634 exploit?
REDHAT-BUG-490634 exploits a null pointer dereference flaw via invalid ContextFlags for the reqFlags field.
What could happen if REDHAT-BUG-490634 is exploited?
If REDHAT-BUG-490634 is exploited, it could lead to a denial of service by crashing the krb5 daemon.