SuSE Inc. Information for VU#875073

Kerberos administration daemon vulnerable to buffer overflow


Not Affected

Vendor Statement

SuSE Linux 7.2 and later are shipped with Heimdal Kerberos included, but Kerberos 4 support is disabled in all releases. Therefore, SuSE Linux and SuSE Enterprise Linux are not affected by this bug.

Vendor Information

The vendor has not provided us with any further information regarding this vulnerability.

Vendor References



In the initial (emailed) version CERT Advisory CA-2002-29, we mistakenly included a reference to SuSE Security Announcement (SuSE-SA:2002:034). This was an error, SuSE-SA:2002:034 does not address the vulnerability described in CA-2002-29 and VU#875073.

If you have feedback, comments, or additional information about this vulnerability, please send us email.