VDB

GCVE-110-MAGEIA-2016-123

GCVE-110-MAGEIA-2016-123
Advisory Published
Vulnetix · Advisory published March 25, 2016
It was reported that in all versions of MIT krb5, an authenticated attacker with permission to modify a principal entry can cause kadmind to dereference a null pointer by supplying an empty DB argument to the modify_principal command, if kadmind is configured to use the LDAP KDB module (CVE-2016-3119). The krb5 package has been updated to version 1.12.5 and patched to fix this issue and other bugs.

Affected Products

VendorProductVersionsPlatforms
Mageiakrb50 (affected), 1.12.5-1.mga5 (unaffected)

Browse GCVE Records

74,496 records in the GCVE database · Updated July 23, 2026

No matching records found.

Explore Further

Investigate this vulnerability in the interactive console or download the raw GCVE record.

$ Console Community · 100/wk Open console ›