Jump to content

Advisories MDKSA-2007:239: Updated heimdal packages fix potential vulnerability


paul
 Share

Recommended Posts

It was found that the gss_userok() function in Heimdal 0.7.2 did not

allocate memory for the ticketfile pointer before calling free(), which

could possibly allow remote attackers to have an unknown impact via an

invalid username. It is uncertain whether or not this is exploitable,

however packages are being provided regardless.

 

The updated packages have been patched to correct these issues.

Link to comment
Share on other sites

Guest
This topic is now closed to further replies.
 Share

×
×
  • Create New...