Security Advisory

CVE-2008-0063

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2008-03-19 10:00:00
Last updated 2024-08-07 07:32:23
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

The Kerberos 4 support in KDC in MIT Kerberos 5 (krb5kdc) does not properly clear the unused portion of a buffer when generating an error message, which might allow remote attackers to obtain sensitive information, aka "Uninitialized stack values."