Juniper Networks
Solutions
Products & Services
Company
Partners
Support
Education

Signature Detail

Security Intelligence Center
Signatures
Print

Short Name

APP:MISC:KADMIN-4-OF

Severity

High

Recommended

No

Recommended Action

Drop

Category

APP

Keywords

Kadmin for krb-4.1.2 Buffer Overflow

Release Date

2003/04/22

Update Number

1213

Supported Platforms

idp-4.0+, isg-3.0+, j-series-9.5+, mx-9.4+, srx-9.2+, srx-branch-9.4+, vsrx-12.1+

APP: Kadmin for krb-4.1.2 Buffer Overflow


This signature detects attempts to exploit a known vulnerability against the kadmin daemon. Slackware Linux, SuSE Linux, and some BSD implementations are vulnerable. An attacker might be able to create a denial-of-service (DoS) condition or possibly execute arbitrary code in the host system.

Extended Description

A vulnerability has been discovered in the kadmind daemon. It has been reported that kadmind is vulnerable to a remotely exploitable buffer overflow. This issue is due to insufficient bounds checking. Exploiting this issue could potentially allow an attacker to execute arbitrary code with the privileges of the kadmind process. This issue is reported to exist in the Kerberos 4 administration protocol. Kerberos 5 includes support for the Kerberos 4 administration daemon. Various Kerberos implementations are reported to be affected by this vulnerability. There are reports that this vulnerability is being actively exploited in the wild.

Affected Products

  • FreeBSD 4.0.0
  • FreeBSD 4.1.0
  • FreeBSD 4.2.0
  • FreeBSD 4.3.0
  • FreeBSD 4.4.0
  • FreeBSD 4.5.0
  • FreeBSD 4.6.0
  • FreeBSD 4.7.0
  • FreeBSD 4.7.0 -RELEASE
  • IBM PSSP 3.1.1
  • IBM PSSP 3.2.0
  • IBM PSSP 3.4.0
  • IBM PSSP 3.5.0
  • KTH eBones 1.2.0
  • KTH Heimdal 0.21.0
  • KTH Heimdal 0.3.0 e
  • KTH Heimdal 0.4.0 a
  • KTH Heimdal 0.4.0 b
  • KTH Heimdal 0.4.0 c
  • KTH Heimdal 0.4.0 d
  • KTH Heimdal 0.4.0 e
  • KTH Heimdal 0.5.0
  • MIT Kerberos 4 1.0.0
  • MIT Kerberos 4 1.1.0
  • MIT Kerberos 4 4.0.0
  • MIT Kerberos 5 1.0.0
  • MIT Kerberos 5 1.0.6
  • MIT Kerberos 5 1.1.0
  • MIT Kerberos 5 1.1.1
  • MIT Kerberos 5 1.2.0
  • MIT Kerberos 5 1.2.1
  • MIT Kerberos 5 1.2.2
  • MIT Kerberos 5 1.2.3
  • MIT Kerberos 5 1.2.4
  • MIT Kerberos 5 1.2.5
  • MIT Kerberos 5 1.2.6
  • NetBSD 1.5.0
  • NetBSD 1.5.1
  • NetBSD 1.5.2
  • NetBSD 1.5.3
  • NetBSD 1.6.0
  • OpenBSD 3.0
  • OpenBSD 3.1
  • OpenBSD 3.2

References

  • BugTraq: 6024
  • CERT: CA-2002-29
  • CVE: CVE-2002-1235
  • URL: http://securitytracker.com/alerts/2002/Nov/1005568.html
  • URL: http://web.mit.edu/kerberos/www/advisories/MITKRB5-SA-2002-002-kadm4.txt

Site Map
RSS Feeds
Careers
Accessibility
Feedback
Privacy Policy
Legal Notices
Copyright © 1999-2010 Juniper Networks, Inc. All rights reserved.
Help
|
My Account
|
Log Out