CVE-2006-3083
Summary
| CVE | CVE-2006-3083 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2006-08-09 10:04:00 UTC |
| Updated | 2020-01-21 15:45:00 UTC |
| Description | The (1) krshd and (2) v4rcp applications in (a) MIT Kerberos 5 (krb5) up to 1.5, and 1.4.x before 1.4.4, when running on Linux and AIX, and (b) Heimdal 0.7.2 and earlier, do not check return codes for setuid calls, which allows local users to gain privileges by causing setuid to fail to drop privileges using attacks such as resource exhaustion. |
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|
| SecurityTracker.com Archives - Kerberos Application Flaws in Evaluating setuid/seteuid Calls May Let Local Users Gain Elevated Privileges |
SECTRACK |
securitytracker.com |
|
| Security Announcement |
SUSE |
www.novell.com |
|
| US-CERT Vulnerability Note VU#580124 |
CERT-VN |
www.kb.cert.org |
Patch, US Government Resource |
| Gentoo Linux Documentation
--
MIT Kerberos 5: Multiple local privilege escalation vulnerabilities |
GENTOO |
www.gentoo.org |
|
| 2006-08-08: multiple local privilege escalation vulnerabilities |
CONFIRM |
www.pdc.kth.se |
|
| Advisories - Mandriva Linux |
MANDRIVA |
www.mandriva.com |
|
| SUSE Update for Multiple Packages - Secunia Advisories - Vulnerability Intelligence - Secunia.com |
SECUNIA |
secunia.com |
Vendor Advisory |
| Ubuntu update for krb5 - Secunia Advisories - Vulnerability Intelligence - Secunia.com |
SECUNIA |
secunia.com |
Vendor Advisory |
| usn/usn-334-1 - Ubuntu: Linux for human beings |
UBUNTU |
www.ubuntu.com |
|
| SecurityFocus |
BUGTRAQ |
www.securityfocus.com |
|
| Gentoo Linux Documentation
--
Heimdal: Multiple local privilege escalation vulnerabilities |
GENTOO |
security.gentoo.org |
|
| Secunia - Advisories - Heimdal setuid Security Issue |
SECUNIA |
secunia.com |
Vendor Advisory |
| Gentoo update for heimdal - Advisories - Secunia |
SECUNIA |
secunia.com |
Vendor Advisory |
| 27870 |
OSVDB |
www.osvdb.org |
|
| Secunia - Advisories - Debian update for krb5 |
SECUNIA |
secunia.com |
Vendor Advisory |
| Security Announcement |
SUSE |
www.novell.com |
|
| Avaya Products Kerberos V5 setuid Security Issue - Advisories - Secunia |
SECUNIA |
secunia.com |
Vendor Advisory |
| 27869 |
OSVDB |
www.osvdb.org |
|
| SecurityFocus |
BUGTRAQ |
www.securityfocus.com |
|
| Repository / Oval Repository |
OVAL |
oval.cisecurity.org |
|
| web.mit.edu/Kerberos/advisories/MITKRB5-SA-2006-001-setuid.txt |
CONFIRM |
web.mit.edu |
Patch, Vendor Advisory |
| MIT Kerberos 5 Multiple Local Privilege Escalation Vulnerabilities |
BID |
www.securityfocus.com |
|
| rhn.redhat.com | Red Hat Support |
REDHAT |
www.redhat.com |
Patch, Vendor Advisory |
| ftp.pdc.kth.se/pub/heimdal/src/heimdal-0.7.2-setuid-patch.txt |
CONFIRM |
ftp.pdc.kth.se |
|
| Gentoo update for mit-krb5 - Advisories - Secunia |
SECUNIA |
secunia.com |
Vendor Advisory |
| Secunia - Advisories - rPath update for krb5 |
SECUNIA |
secunia.com |
Vendor Advisory |
| Kerberos V5 setuid Security Issue - Advisories - Secunia |
SECUNIA |
secunia.com |
Vendor Advisory |
| Webmail - OVH |
VUPEN |
www.vupen.com |
Vendor Advisory |
| ASA-2006-211 (RHSA-2006-0612) |
CONFIRM |
support.avaya.com |
|
| SUSE Update for Multiple Packages - Advisories - Secunia |
SECUNIA |
secunia.com |
Vendor Advisory |
| Debian -- Security Information -- DSA-1146-1 krb5 |
DEBIAN |
www.debian.org |
|
| Secunia - Advisories - Mandriva update for krb5 |
SECUNIA |
secunia.com |
Vendor Advisory |
| Secunia - Advisories - Red Hat update for krb5 |
SECUNIA |
secunia.com |
Vendor Advisory |
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
Vendor Comments And Credit
| Organization | Published | Contributor | Statement |
|---|
| Red Hat | 2007-03-14 | Mark J Cox | Red Hat Enterprise Linux 5 is not vulnerable to this issue as it contains a backported patch. |
There are currently no legacy QID mappings associated with this CVE.