SuSE Inc. Information for VU#875073
Kerberos administration daemon vulnerable to buffer overflow
- Vendor Information Help Date Notified: 24 Oct 2002
- Statement Date:
- Date Updated: 30 Oct 2002
SuSE Linux 7.2 and later are shipped with Heimdal Kerberos included, but Kerberos 4 support is disabled in all releases. Therefore, SuSE Linux and SuSE Enterprise Linux are not affected by this bug.
The vendor has not provided us with any further information regarding this vulnerability.
In the initial (emailed) version CERT Advisory CA-2002-29, we mistakenly included a reference to SuSE Security Announcement (SuSE-SA:2002:034). This was an error, SuSE-SA:2002:034 does not address the vulnerability described in CA-2002-29 and VU#875073.