vendor:
Kerberos
by:
Jon Oberheide
7.2
CVSS
HIGH
Privilege Escalation
264
CWE
Product Name: Kerberos
Affected Version From: < 3.13
Affected Version To: < 3.13
Patch Exists: YES
Related CWE: CVE-2009-0360
CPE: a:mit:kerberos:pam-krb5
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Linux
2009
pam-krb5 < 3.13 local privilege escalation
pam-krb5 before 3.13, when linked against MIT Kerberos, does not properly initialize the Kerberos libraries for setuid use, which allows local users to gain privileges by pointing an environment variable to a modified Kerberos configuration file, and then launching a PAM-based setuid application.
Mitigation:
Upgrade to the latest version of pam-krb5.