Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The unparse implementation in the Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) 1.6.x through 1.9, when an LDAP backend is used, allows remote attackers to cause a denial of service (file descriptor exhaustion and daemon hang) via a principal name that triggers use of a backslash escape sequence, as demonstrated by a \n sequence.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
MIT Kerberos 5 KDC非过滤实现拒绝服务漏洞
Vulnerability Description
MIT Kerberos 5 是一种常用的开源Kerberos实现。 当LDAP后端启用时,MIT Kerberos 5(又名krb5)1.6.x至1.9版本中的Key Distribution Center(KDC)中的非过滤实现中存在加密问题漏洞。远程攻击者可以借助能够触发反斜杠脱离序列使用的主体名称,导致拒绝服务(文件描述符耗尽以及守护进程挂起)。
CVSS Information
N/A
Vulnerability Type
N/A