MIT Kerberos Checksum AD-SIGNEDPATH and AD-KDC-ISSUED Security Bypass

  Bookmark
 and Share

MIT Kerberos is a suite of applications and libraries designed to implement the Kerberos network authentication protocol. MIT Kerberos is exposed to a remote security bypass issue because "krb5" incorrectly accepts certain unkeyed checksums. Kerberos versions 5 1.8.x are affected.

Ref: http://www.securityfocus.com/archive/1/514953

10.50.14 - CVE: CVE-2010-4020
Platform: Cross Platform