Vulnerability Bulletins |
Obtención de la clave maestra de Kerberos en Red Hat Enterprise IPA v.1 EL5 |
|
Vulnerability classification |
|
| Property | Value |
| Confidence level | Oficial |
| Impact | Confidencialidad |
| Dificulty | Experto |
| Required attacker level | Acceso remoto sin cuenta a un servicio estandar |
System information |
|
| Property | Value |
| Affected manufacturer | GNU/Linux |
| Affected software | Red Hat Enterprise IPA v.1 EL5 |
Description |
|
|
Se ha descubierto una vulnerabilidad Red Hat Enterprise IPA. La vulnerabilidad reside en un error en la configuración por defecto. Un atacante remoto podría obtener la clave maestra de Kerberos mediante una consulta anónima LDAP. |
|
Solution |
|
|
Actualización de software Red Hat (RHSA-2008:0860-12) Red Hat Enterprise IPA v.1 EL5 https://rhn.redhat.com/ |
|
Standar resources |
|
| Property | Value |
| CVE | CVE-2008-3274 |
| BID | 31111 |
Other resources |
|
|
Red Hat Security Advisory (RHSA-2008:0860-12) https://rhn.redhat.com/errata/RHSA-2008-0860.html |
|
Version history |
||
| Version | Comments | Date |
| 1.0 | Aviso emitido | 2008-09-18 |






