Sun Microsystems, Inc. Information for VU#356961

MIT Kerberos kadmind RPC library gssrpc__svcauth_gssapi() uninitialized pointer free vulnerability

Status

Affected

Vendor Statement

Sun can confirm that Solaris 8, 9, and 10 are affected by the issue

described in CERT advisory VU#356961.

Sun has published Sun Alert 102914 which includes details of the
Solaris specific impact, contributing factors, workaround options
and resolution information, and is available here:
http://sunsolve.sun.com/search/document.do?assetkey=1-26-102914-1

Vendor Information

The vendor has not provided us with any further information regarding this vulnerability.

Vendor References

None

Addendum

There are no additional comments at this time.

If you have feedback, comments, or additional information about this vulnerability, please send us email.