FreeBSD : krb5 -- NULL pointer dereference in the KDC PKINIT code [CVE-2013-1415] (f54584bc-7d2b-11e2-9bd1-206a8a720317)

high Nessus Plugin ID 64860

Synopsis

The remote FreeBSD host is missing a security-related update.

Description

No advisory has been released yet.

Fix a NULL pointer dereference in the KDC PKINIT code [CVE-2013-1415].

Solution

Update the affected package.

See Also

http://web.mit.edu/kerberos/www/krb5-1.11/

http://www.nessus.org/u?4636e461

Plugin Details

Severity: High

ID: 64860

File Name: freebsd_pkg_f54584bc7d2b11e29bd1206a8a720317.nasl

Version: 1.9

Type: local

Published: 2/24/2013

Updated: 1/6/2021

Supported Sensors: Nessus

Risk Information

VPR

Risk Factor: Low

Score: 3.6

CVSS v2

Risk Factor: High

Base Score: 7.1

Vector: CVSS2#AV:N/AC:M/Au:N/C:N/I:N/A:C

Vulnerability Information

CPE: p-cpe:/a:freebsd:freebsd:krb5, cpe:/o:freebsd:freebsd

Required KB Items: Host/local_checks_enabled, Host/FreeBSD/release, Host/FreeBSD/pkg_info

Patch Publication Date: 2/22/2013

Vulnerability Publication Date: 2/21/2013

Reference Information

CVE: CVE-2013-1415