[OpenAFS] Buffer Overflow in kerberos / are we affected?

Derrick J Brashear shadow@dementia.org
Fri, 25 Oct 2002 10:17:29 -0400 (EDT)


On Fri, 25 Oct 2002, [iso-8859-1] Rubino Geiß wrote:

> In brief:
> PROBLEM: A stack buffer overflow in the implementation of the Kerberos
> v4 compatibility administration daemon (kadmind4) in the MIT krb5
> distribution could be exploited to gain unauthorized root access to a
> KDC host.  

Simple answer: we don't have a Kerberos v4 kadmind.