CVE-2006-6143
EPSS 7.9%
描述
The RPC library in Kerberos 5 1.4 through 1.4.4, and 1.5 through 1.5.1, as used in Kerberos administration daemon (kadmind) and other products that use this library, calls an uninitialized function pointer in freed memory, which allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via unspecified vectors.
如何修補 CVE-2006-6143
要修補 CVE-2006-6143,請將受影響套件升級到下列已修補版本。
- Debian/krb5—升級至 1.4.4-6 或更新版本
CVE-2006-6143 正在被利用嗎?
中等 — EPSS 為 7.9%,可持續追蹤但非最高優先。
受影響套件(1)
- from 0, < 1.4.4-6