PDA

View Full Version : MIT Kerberos DoS and Arbitrary Code Vulnerability



newsbot
01-07-2009, 10:07 PM
<excerpt>An input validation flaw in the asn1_decode_generaltime function in MIT Kerberos 5 allows remote attackers to cause a denial of service or possibly execute arbitrary code via vectors involving an invalid DER encoding that triggers a free of an uninitialized pointer</excerpt>.

-</p>

Make your website safer. Use external penetration testing (http://www.beyondsecurity.com/penetration-testing.html) service. First report ready in one hour!</p>

**Hidden Content: Check the thread to see hidden data.**