Debian Security Advisory 5344-1

Discussion in 'News Aggregator' started by Packet Storm, 9 Feb 2023.

  1. Packet Storm

    Packet Storm Guest

    Debian Linux Security Advisory 5344-1 - Helmut Grohne discovered a flaw in Heimdal, an implementation of Kerberos 5 that aims to be compatible with MIT Kerberos. The backports of fixes for CVE-2022-3437 accidentally inverted important memory comparisons in the arcfour-hmac-md5 and rc4-hmac integrity check handlers for gssapi, resulting in incorrect validation of message integrity codes.

    Continue reading...
     

Share This Page

Loading...