Red Hat, Inc. Information for VU#356961

MIT Kerberos kadmind RPC library gssrpc__svcauth_gssapi() uninitialized pointer free vulnerability



Vendor Statement

These issues affect the krb5-server package available for Red Hat

Enterprise Linux 2.1, 3, 4, and 5. Updated packages to correct this
issue are available along with our advisories at the URLs below and
via Red Hat Network.

Red Hat Enterprise Linux 2.1, 3:

Red Hat Enterprise Linux 4, 5:

Vendor Information

The vendor has not provided us with any further information regarding this vulnerability.

Vendor References



There are no additional comments at this time.

If you have feedback, comments, or additional information about this vulnerability, please send us email.