SuSE 10 Security Update : krb5-apps-servers and krb5-apps-clients (ZYPP Patch Number 1938)
High Nessus Plugin ID 29496
The remote SuSE 10 host is missing a security-related patch.
Various return checks of setuid() and seteuid() calls have been fixed in kerberos client and server applications. If these applications are setuid, it might have been possible for local attackers to gain root access. (CVE-2006-3083) We are not affected by the seteuid() problems, tracked by CVE-2006-3084.