VDB
CVE-2004-0523
CVE-2004-0523
PUBLISHED
CVSS 10 CRITICAL
Multiple buffer overflows in krb5_aname_to_localname for MIT Kerberos 5 (krb5) 1.3.3 and earlier allow remote attackers to execute arbitrary code as root.
EPSS 11.67% · 95.8th percentile
Risk Scores
CVSS 2.0
10
EPSS Score
11.67%
95.8th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| n/a | n/a | n/a |
| mit | kerberos | 1.0, 1.2.2.beta1, 1.0.8 |
| sun | seam | 1.0, 1.0.2, 1.0.1 |
| sun | solaris | 9.0, 9.0, 8.0 |
| sun | sunos | 5.8 |
| mit | kerberos_5 | 1.1.1, 1.2.3, 1.2.6 |
| sgi | propack | 2.4, 3.0 |
| tinysofa | tinysofa_enterprise_server | *, 1.0 |
Timeline
- Jun 3, 2004 CVE Published
- Feb 4, 2022 EPSS Score
- Mar 29, 2022 EPSS Score
- Jul 12, 2022 EPSS Score
- Sep 4, 2022 EPSS Score
- Oct 27, 2022 EPSS Score
- Dec 19, 2022 EPSS Score
- Mar 7, 2023 EPSS Score
- Apr 3, 2023 EPSS Score
- May 26, 2023 EPSS Score
- Jul 18, 2023 EPSS Score
- Oct 31, 2023 EPSS Score
References
- RHSA-2004:236 vendor-advisory
- GLSA-200406-21 vendor-advisory
- FEDORA-2004-149 vendor-advisory
- oval:org.mitre.oval:def:991 vdb
- DSA-520 vendor-advisory
- 20040605-01-U vendor-advisory
- Kerberos-krb5anametolocalname-bo(16268) vdb
- 20040602 TSSA-2004-009 - kerberos5 mailing-list
- oval:org.mitre.oval:def:2002 vdb
- ftp://patches.sgi.com/support/free/security/advisories/20040604-01-U.asc technical
- http://marc.info/?l=bugtraq&m=108612325909496&w=2 technical
- http://www.securityfocus.com/bid/10448 technical
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A724 technical
- http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000860 technical
- http://www.mandrakesecure.net/en/advisories/advisory.php?name=MDKSA-2004:056 technical
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10295 technical
- https://nvd.nist.gov/vuln/detail/CVE-2004-0523 advisory
- http://lwn.net/Articles/88206 url
- http://marc.info/?l=bugtraq&m=108619250923790&w=2 url
- http://sunsolve.sun.com/search/document.do?assetkey=1-26-101512-1 url
…and 1 more