CVE-2007-5894
Last modified
CVE-2007-5894 is a vulnerability of currently unknown severity. The reply function in ftpd.c in the gssftp ftpd in MIT Kerberos 5 (krb5) does not initialize the length variable when auth_type has a certain value, which has unknown impact and remote authenticated attack vectors. NOTE: the original disclosure misidentifies the conditions under which the uninitialized variable is used. EPSS estimates a 2.69% chance of exploitation in the next 30 days.
Description
The reply function in ftpd.c in the gssftp ftpd in MIT Kerberos 5 (krb5) does not initialize the length variable when auth_type has a certain value, which has unknown impact and remote authenticated attack vectors. NOTE: the original disclosure misidentifies the conditions under which the uninitialized variable is used. NOTE: the vendor disputes this issue, stating " The 'length' variable is only uninitialized if 'auth_type' is neither the 'KERBEROS_V4' nor 'GSSAPI'; this condition cannot occur in the unmodified source code.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Mit | Kerberos 5 | All versions |
References
- http://secunia.com/advisories/28636Vendor Advisory
- http://secunia.com/advisories/29457Vendor Advisory
- http://secunia.com/advisories/28636Vendor Advisory
- http://secunia.com/advisories/29457Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2007-5894?
How severe is CVE-2007-5894?
How do I fix CVE-2007-5894?
Are you affected by CVE-2007-5894?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
