SUSE-SU-2016:0429-1
Dashboard / Vulnerabilities / SUSE-SU-2016:0429-1
SUSE-SU-2016:0429-1
Summary: Security update for krb5
Details: This update for krb5 fixes the following issues: - CVE-2015-8629: Information leak authenticated attackers with permissions to modify the database (bsc#963968) - CVE-2015-8630: An authenticated attacker with permission to modify a principal entry may have caused kadmind to crash (bsc#963964) - CVE-2015-8631: An authenticated attacker could have caused a memory leak in auditd by supplying a null principal name in request (bsc#963975)
References: https://www.suse.com/support/update/announcement/2016/suse-su-20160429-1/, https://bugzilla.suse.com/963964, https://bugzilla.suse.com/963968, https://bugzilla.suse.com/963975, https://www.suse.com/security/cve/CVE-2015-8629, https://www.suse.com/security/cve/CVE-2015-8630, https://www.suse.com/security/cve/CVE-2015-8631
Affected packages
Package
Name: krb5
Purl: pkg:rpm/suse/krb5&distro=SUSE%20Linux%20Enterprise%20Desktop%2012
Affected ranges
Type: ECOSYSTEM
Events:
