plugins/preauth/pkinit/pkinit_crypto_openssl.c in MIT Kerberos 5 (aka krb5) through 1.15.2 mishandles Distinguished Name (DN) fields, which allows remote attackers to execute arbitrary code or cause a denial of service (buffer overflow and application crash) in situations involving untrusted X.509 data, related to the get_matching_data and X509_NAME_oneline_ex functions. NOTE: this has security relevance only in use cases outside of the MIT Kerberos distribution, e.g., the use of get_matching_data in KDC certauth plugin code that is specific to Red Hat.
Advisories
Source ID Title
EUVD EUVD EUVD-2017-6557 plugins/preauth/pkinit/pkinit_crypto_openssl.c in MIT Kerberos 5 (aka krb5) through 1.15.2 mishandles Distinguished Name (DN) fields, which allows remote attackers to execute arbitrary code or cause a denial of service (buffer overflow and application crash) in situations involving untrusted X.509 data, related to the get_matching_data and X509_NAME_oneline_ex functions. NOTE: this has security relevance only in use cases outside of the MIT Kerberos distribution, e.g., the use of get_matching_data in KDC certauth plugin code that is specific to Red Hat.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: redhat

Published:

Updated: 2024-08-05T19:42:22.305Z

Reserved: 2017-10-08T00:00:00

Link: CVE-2017-15088

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2017-11-23T17:29:00.353

Modified: 2025-04-20T01:37:25.860

Link: CVE-2017-15088

cve-icon Redhat

Severity : Moderate

Publid Date: 2017-10-25T00:00:00Z

Links: CVE-2017-15088 - Bugzilla

cve-icon OpenCVE Enrichment

No data.