CVE-2020-1703
Last modified
This CVE is reserved or rejected; no details have been published by NVD.
Description
Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: Red Hat Product Security does not consider this as a security flaw. Password changes aren't expected to invalidate existing sessions. Though this is how Kerberos behaves: incrementing kvno will not invalidate any existing service tickets. This is not a concern because the lifetime on service tickets should be set appropriately (initially only a global, now also more finely configurable with the kdcpolicy plugin). This belief is reinforced by our use of mod_session: existing sessions there aren't terminated, but instead wait for expiration
Timeline
- Published
- Last Modified
- Status
- Rejected
Related CVEs from 2020
- CVE-2020-17024Windows Client Side Rendering Print Provider Elevation of Pr…7.8
- CVE-2020-17025Windows Remote Access Elevation of Privilege Vulnerability7.8
- CVE-2020-17026Windows Remote Access Elevation of Privilege Vulnerability7.8
- CVE-2020-17027Windows Remote Access Elevation of Privilege Vulnerability7.8
- CVE-2020-17028Windows Remote Access Elevation of Privilege Vulnerability7.8
- CVE-2020-17029Windows Canonical Display Driver Information Disclosure Vuln…5.5
- CVE-2020-17030Windows MSCTF Server Information Disclosure Vulnerability5.5
- CVE-2020-17031Windows Remote Access Elevation of Privilege Vulnerability7.8
- CVE-2020-17032Windows Remote Access Elevation of Privilege Vulnerability7.8
- CVE-2020-17033Windows Remote Access Elevation of Privilege Vulnerability7.8
- CVE-2020-17034Windows Remote Access Elevation of Privilege Vulnerability7.8
- CVE-2020-17035Windows Kernel Elevation of Privilege Vulnerability7.8
Are you affected by CVE-2020-1703?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
