{"api_version":"1","generated_at":"2026-07-23T12:32:07+00:00","cve":"CVE-2006-6143","urls":{"html":"https://cve.report/CVE-2006-6143","api":"https://cve.report/api/cve/CVE-2006-6143.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2006-6143","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2006-6143"},"summary":{"title":"CVE-2006-6143","description":"The RPC library in Kerberos 5 1.4 through 1.4.4, and 1.5 through 1.5.1, as used in Kerberos administration daemon (kadmind) and other products that use this library, calls an uninitialized function pointer in freed memory, which allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via unspecified vectors.","state":"PUBLISHED","assigner":"mitre","published_at":"2006-12-31 05:00:00","updated_at":"2026-04-23 00:35:47"},"problem_types":["CWE-824","n/a"],"metrics":[{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"9.3","severity":"","vector":"AV:N/AC:M/Au:N/C:C/I:C/A:C","data":{"version":"2.0","vectorString":"AV:N/AC:M/Au:N/C:C/I:C/A:C","baseScore":9.3,"accessVector":"NETWORK","accessComplexity":"MEDIUM","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"}}],"references":[{"url":"http://secunia.com/advisories/23701","name":"http://secunia.com/advisories/23701","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"],"title":"SUSE update for Kerberos - Advisories - Secunia","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://docs.info.apple.com/article.html?artnum=305391","name":"http://docs.info.apple.com/article.html?artnum=305391","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"],"title":"About Security Update 2007-004","mime":"text/html","httpstatus":"-1","archivestatus":"200"},{"url":"http://www.securityfocus.com/archive/1/456406/100/0/threaded","name":"http://www.securityfocus.com/archive/1/456406/100/0/threaded","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link","Third Party Advisory","VDB Entry"],"title":"SecurityFocus","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.kb.cert.org/vuls/id/481564","name":"http://www.kb.cert.org/vuls/id/481564","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Third Party Advisory","US Government Resource"],"title":"US-CERT Vulnerability Note VU#481564","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.us-cert.gov/cas/techalerts/TA07-009B.html","name":"http://www.us-cert.gov/cas/techalerts/TA07-009B.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link","Patch","Third Party Advisory","US Government Resource"],"title":"US-CERT Technical Cyber Security Alert TA07-009B -- MIT Kerberos Vulnerabilities","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/23706","name":"http://secunia.com/advisories/23706","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"],"title":"Fedora Core 6 update for krb5 - Advisories - Secunia","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.ubuntu.com/usn/usn-408-1","name":"http://www.ubuntu.com/usn/usn-408-1","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"],"title":"USN-408-1: krb5 vulnerability | Ubuntu","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.openpkg.com/security/advisories/OpenPKG-SA-2007.006.html","name":"http://www.openpkg.com/security/advisories/OpenPKG-SA-2007.006.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"],"title":"OpenPKG Corporation: Security: Security Advisories","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://lists.apple.com/archives/Security-announce/2007/Apr/msg00001.html","name":"http://lists.apple.com/archives/Security-announce/2007/Apr/msg00001.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Mailing List"],"title":"APPLE-SA-2007-04-19 Security Update 2007-004","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/23667","name":"http://secunia.com/advisories/23667","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"],"title":"Mandriva update for krb5 - Advisories - Secunia","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/23696","name":"http://secunia.com/advisories/23696","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"],"title":"Kerberos kadmind xprt->xp_auth Code Execution Vulnerability - Advisories - Secunia","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/31422","name":"https://exchange.xforce.ibmcloud.com/vulnerabilities/31422","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","VDB Entry"],"title":"IBM X-Force Exchange","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.securityfocus.com/bid/21970","name":"http://www.securityfocus.com/bid/21970","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link","Third Party Advisory","VDB Entry"],"title":"MIT Kerberos 5 RPC Library Remote Code Execution Vulnerability","mime":"text/html","httpstatus":"200","archivestatus":"0"},{"url":"https://issues.rpath.com/browse/RPL-925","name":"https://issues.rpath.com/browse/RPL-925","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"],"title":"","mime":"","httpstatus":"-1","archivestatus":"404"},{"url":"http://www.vupen.com/english/advisories/2007/0111","name":"http://www.vupen.com/english/advisories/2007/0111","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"],"title":"Webmail - OVH","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://security.gentoo.org/glsa/glsa-200701-21.xml","name":"http://security.gentoo.org/glsa/glsa-200701-21.xml","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"],"title":"Gentoo Linux Documentation\n--\n  MIT Kerberos 5: Arbitrary Remote Code Execution","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://fedoranews.org/cms/node/2375","name":"http://fedoranews.org/cms/node/2375","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"],"title":"[SECURITY] Fedora Core 6 Update: krb5-1.5-13 | FedoraNEWS.ORG","mime":"text/html","httpstatus":"404","archivestatus":"200"},{"url":"http://secunia.com/advisories/23772","name":"http://secunia.com/advisories/23772","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"],"title":"Ubuntu update for krb5 - Advisories - Secunia","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://lists.suse.com/archive/suse-security-announce/2007-Jan/0004.html","name":"http://lists.suse.com/archive/suse-security-announce/2007-Jan/0004.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"],"title":"SuSE Security announcements: [suse-security-announce] SUSE Security Announcement: krb5 security problems (SUSE-SA:2007:004)","mime":"text/html","httpstatus":"404","archivestatus":"200"},{"url":"http://www.mandriva.com/security/advisories?name=MDKSA-2007:008","name":"http://www.mandriva.com/security/advisories?name=MDKSA-2007:008","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"],"title":"Advisories | Mandriva","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.vupen.com/english/advisories/2007/1470","name":"http://www.vupen.com/english/advisories/2007/1470","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"],"title":"Webmail - OVH","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://osvdb.org/31281","name":"http://osvdb.org/31281","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"],"title":"","mime":"","httpstatus":"-1","archivestatus":"0"},{"url":"http://secunia.com/advisories/23903","name":"http://secunia.com/advisories/23903","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"],"title":"Gentoo update for mit-krb5 - Advisories - Secunia","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://web.mit.edu/kerberos/www/advisories/MITKRB5-SA-2006-002-rpc.txt","name":"http://web.mit.edu/kerberos/www/advisories/MITKRB5-SA-2006-002-rpc.txt","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"],"title":"","mime":"text/plain","httpstatus":"200","archivestatus":"200"},{"url":"http://securitytracker.com/id?1017493","name":"http://securitytracker.com/id?1017493","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link","Third Party Advisory","VDB Entry"],"title":"Kerberos kadmind SVCAUTH_DESTROY() Lets Remote Users Execute Arbitrary Code - SecurityTracker","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/23707","name":"http://secunia.com/advisories/23707","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"],"title":"Fedora Core 5 update for krb5 - Advisories - Secunia","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.us-cert.gov/cas/techalerts/TA07-109A.html","name":"http://www.us-cert.gov/cas/techalerts/TA07-109A.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link","Third Party Advisory","US Government Resource"],"title":"US-CERT Technical Cyber Security Alert TA07-109A -- Apple Updates for Multiple Vulnerabilities","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://fedoranews.org/cms/node/2376","name":"http://fedoranews.org/cms/node/2376","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"],"title":"404 Not Found","mime":"text/html","httpstatus":"404","archivestatus":"404"},{"url":"http://secunia.com/advisories/24966","name":"http://secunia.com/advisories/24966","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"],"title":"Mac OS X Security Update Fixes Multiple Vulnerabilities - Advisories - Secunia","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://www.cve.org/CVERecord?id=CVE-2006-6143","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2006-6143","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2006","cve_id":"6143","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"canonical","cpe5":"ubuntu_linux","cpe6":"6.06","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2006","cve_id":"6143","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"canonical","cpe5":"ubuntu_linux","cpe6":"6.10","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2006","cve_id":"6143","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"mit","cpe5":"kerberos_5","cpe6":"1.4","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2006","cve_id":"6143","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"mit","cpe5":"kerberos_5","cpe6":"1.4.1","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2006","cve_id":"6143","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"mit","cpe5":"kerberos_5","cpe6":"1.4.2","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2006","cve_id":"6143","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"mit","cpe5":"kerberos_5","cpe6":"1.4.3","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2006","cve_id":"6143","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"mit","cpe5":"kerberos_5","cpe6":"1.4.4","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2006","cve_id":"6143","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"mit","cpe5":"kerberos_5","cpe6":"1.5","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2006","cve_id":"6143","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"mit","cpe5":"kerberos_5","cpe6":"1.5.1","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[{"cvename":"CVE-2006-6143","organization":"Red Hat","lastmodified":"2007-03-14","contributor":"Mark J Cox","statementText":"Not vulnerable. Red Hat Enterprise Linux 2.1, 3, and 4 ship with versions of Kerberos 5 prior to version 1.4 and are therefore not affected by these vulnerabilities. Red Hat Enterprise Linux 5 is not vulnerable to this issue as it contains a backported patch.","cve_year":"2006","cve_id":"6143","crc32":"a161cc6e"}],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-07T20:19:34.415Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"name":"1017493","tags":["vdb-entry","x_refsource_SECTRACK","x_transferred"],"url":"http://securitytracker.com/id?1017493"},{"name":"FEDORA-2007-034","tags":["vendor-advisory","x_refsource_FEDORA","x_transferred"],"url":"http://fedoranews.org/cms/node/2376"},{"name":"31281","tags":["vdb-entry","x_refsource_OSVDB","x_transferred"],"url":"http://osvdb.org/31281"},{"name":"24966","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/24966"},{"name":"VU#481564","tags":["third-party-advisory","x_refsource_CERT-VN","x_transferred"],"url":"http://www.kb.cert.org/vuls/id/481564"},{"name":"USN-408-1","tags":["vendor-advisory","x_refsource_UBUNTU","x_transferred"],"url":"http://www.ubuntu.com/usn/usn-408-1"},{"name":"TA07-009B","tags":["third-party-advisory","x_refsource_CERT","x_transferred"],"url":"http://www.us-cert.gov/cas/techalerts/TA07-009B.html"},{"name":"23696","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/23696"},{"name":"SUSE-SA:2007:004","tags":["vendor-advisory","x_refsource_SUSE","x_transferred"],"url":"http://lists.suse.com/archive/suse-security-announce/2007-Jan/0004.html"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://docs.info.apple.com/article.html?artnum=305391"},{"name":"23706","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/23706"},{"name":"MDKSA-2007:008","tags":["vendor-advisory","x_refsource_MANDRIVA","x_transferred"],"url":"http://www.mandriva.com/security/advisories?name=MDKSA-2007:008"},{"name":"23903","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/23903"},{"name":"21970","tags":["vdb-entry","x_refsource_BID","x_transferred"],"url":"http://www.securityfocus.com/bid/21970"},{"name":"23667","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/23667"},{"name":"GLSA-200701-21","tags":["vendor-advisory","x_refsource_GENTOO","x_transferred"],"url":"http://security.gentoo.org/glsa/glsa-200701-21.xml"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://web.mit.edu/kerberos/www/advisories/MITKRB5-SA-2006-002-rpc.txt"},{"name":"OpenPKG-SA-2007.006","tags":["vendor-advisory","x_refsource_OPENPKG","x_transferred"],"url":"http://www.openpkg.com/security/advisories/OpenPKG-SA-2007.006.html"},{"name":"FEDORA-2007-033","tags":["vendor-advisory","x_refsource_FEDORA","x_transferred"],"url":"http://fedoranews.org/cms/node/2375"},{"name":"TA07-109A","tags":["third-party-advisory","x_refsource_CERT","x_transferred"],"url":"http://www.us-cert.gov/cas/techalerts/TA07-109A.html"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"https://issues.rpath.com/browse/RPL-925"},{"name":"23707","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/23707"},{"name":"ADV-2007-0111","tags":["vdb-entry","x_refsource_VUPEN","x_transferred"],"url":"http://www.vupen.com/english/advisories/2007/0111"},{"name":"20070109 MITKRB5-SA-2006-002: kadmind (via RPC lib) calls uninitialized function pointer","tags":["mailing-list","x_refsource_BUGTRAQ","x_transferred"],"url":"http://www.securityfocus.com/archive/1/456406/100/0/threaded"},{"name":"23772","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/23772"},{"name":"23701","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/23701"},{"name":"APPLE-SA-2007-04-19","tags":["vendor-advisory","x_refsource_APPLE","x_transferred"],"url":"http://lists.apple.com/archives/Security-announce/2007/Apr/msg00001.html"},{"name":"ADV-2007-1470","tags":["vdb-entry","x_refsource_VUPEN","x_transferred"],"url":"http://www.vupen.com/english/advisories/2007/1470"},{"name":"kerberos-rpc-code-execution(31422)","tags":["vdb-entry","x_refsource_XF","x_transferred"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/31422"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"datePublic":"2007-01-09T00:00:00.000Z","descriptions":[{"lang":"en","value":"The RPC library in Kerberos 5 1.4 through 1.4.4, and 1.5 through 1.5.1, as used in Kerberos administration daemon (kadmind) and other products that use this library, calls an uninitialized function pointer in freed memory, which allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via unspecified vectors."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2018-10-17T20:57:01.000Z","orgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","shortName":"mitre"},"references":[{"name":"1017493","tags":["vdb-entry","x_refsource_SECTRACK"],"url":"http://securitytracker.com/id?1017493"},{"name":"FEDORA-2007-034","tags":["vendor-advisory","x_refsource_FEDORA"],"url":"http://fedoranews.org/cms/node/2376"},{"name":"31281","tags":["vdb-entry","x_refsource_OSVDB"],"url":"http://osvdb.org/31281"},{"name":"24966","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/24966"},{"name":"VU#481564","tags":["third-party-advisory","x_refsource_CERT-VN"],"url":"http://www.kb.cert.org/vuls/id/481564"},{"name":"USN-408-1","tags":["vendor-advisory","x_refsource_UBUNTU"],"url":"http://www.ubuntu.com/usn/usn-408-1"},{"name":"TA07-009B","tags":["third-party-advisory","x_refsource_CERT"],"url":"http://www.us-cert.gov/cas/techalerts/TA07-009B.html"},{"name":"23696","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/23696"},{"name":"SUSE-SA:2007:004","tags":["vendor-advisory","x_refsource_SUSE"],"url":"http://lists.suse.com/archive/suse-security-announce/2007-Jan/0004.html"},{"tags":["x_refsource_CONFIRM"],"url":"http://docs.info.apple.com/article.html?artnum=305391"},{"name":"23706","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/23706"},{"name":"MDKSA-2007:008","tags":["vendor-advisory","x_refsource_MANDRIVA"],"url":"http://www.mandriva.com/security/advisories?name=MDKSA-2007:008"},{"name":"23903","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/23903"},{"name":"21970","tags":["vdb-entry","x_refsource_BID"],"url":"http://www.securityfocus.com/bid/21970"},{"name":"23667","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/23667"},{"name":"GLSA-200701-21","tags":["vendor-advisory","x_refsource_GENTOO"],"url":"http://security.gentoo.org/glsa/glsa-200701-21.xml"},{"tags":["x_refsource_CONFIRM"],"url":"http://web.mit.edu/kerberos/www/advisories/MITKRB5-SA-2006-002-rpc.txt"},{"name":"OpenPKG-SA-2007.006","tags":["vendor-advisory","x_refsource_OPENPKG"],"url":"http://www.openpkg.com/security/advisories/OpenPKG-SA-2007.006.html"},{"name":"FEDORA-2007-033","tags":["vendor-advisory","x_refsource_FEDORA"],"url":"http://fedoranews.org/cms/node/2375"},{"name":"TA07-109A","tags":["third-party-advisory","x_refsource_CERT"],"url":"http://www.us-cert.gov/cas/techalerts/TA07-109A.html"},{"tags":["x_refsource_CONFIRM"],"url":"https://issues.rpath.com/browse/RPL-925"},{"name":"23707","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/23707"},{"name":"ADV-2007-0111","tags":["vdb-entry","x_refsource_VUPEN"],"url":"http://www.vupen.com/english/advisories/2007/0111"},{"name":"20070109 MITKRB5-SA-2006-002: kadmind (via RPC lib) calls uninitialized function pointer","tags":["mailing-list","x_refsource_BUGTRAQ"],"url":"http://www.securityfocus.com/archive/1/456406/100/0/threaded"},{"name":"23772","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/23772"},{"name":"23701","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/23701"},{"name":"APPLE-SA-2007-04-19","tags":["vendor-advisory","x_refsource_APPLE"],"url":"http://lists.apple.com/archives/Security-announce/2007/Apr/msg00001.html"},{"name":"ADV-2007-1470","tags":["vdb-entry","x_refsource_VUPEN"],"url":"http://www.vupen.com/english/advisories/2007/1470"},{"name":"kerberos-rpc-code-execution(31422)","tags":["vdb-entry","x_refsource_XF"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/31422"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"cve@mitre.org","ID":"CVE-2006-6143","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"The RPC library in Kerberos 5 1.4 through 1.4.4, and 1.5 through 1.5.1, as used in Kerberos administration daemon (kadmind) and other products that use this library, calls an uninitialized function pointer in freed memory, which allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via unspecified vectors."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"1017493","refsource":"SECTRACK","url":"http://securitytracker.com/id?1017493"},{"name":"FEDORA-2007-034","refsource":"FEDORA","url":"http://fedoranews.org/cms/node/2376"},{"name":"31281","refsource":"OSVDB","url":"http://osvdb.org/31281"},{"name":"24966","refsource":"SECUNIA","url":"http://secunia.com/advisories/24966"},{"name":"VU#481564","refsource":"CERT-VN","url":"http://www.kb.cert.org/vuls/id/481564"},{"name":"USN-408-1","refsource":"UBUNTU","url":"http://www.ubuntu.com/usn/usn-408-1"},{"name":"TA07-009B","refsource":"CERT","url":"http://www.us-cert.gov/cas/techalerts/TA07-009B.html"},{"name":"23696","refsource":"SECUNIA","url":"http://secunia.com/advisories/23696"},{"name":"SUSE-SA:2007:004","refsource":"SUSE","url":"http://lists.suse.com/archive/suse-security-announce/2007-Jan/0004.html"},{"name":"http://docs.info.apple.com/article.html?artnum=305391","refsource":"CONFIRM","url":"http://docs.info.apple.com/article.html?artnum=305391"},{"name":"23706","refsource":"SECUNIA","url":"http://secunia.com/advisories/23706"},{"name":"MDKSA-2007:008","refsource":"MANDRIVA","url":"http://www.mandriva.com/security/advisories?name=MDKSA-2007:008"},{"name":"23903","refsource":"SECUNIA","url":"http://secunia.com/advisories/23903"},{"name":"21970","refsource":"BID","url":"http://www.securityfocus.com/bid/21970"},{"name":"23667","refsource":"SECUNIA","url":"http://secunia.com/advisories/23667"},{"name":"GLSA-200701-21","refsource":"GENTOO","url":"http://security.gentoo.org/glsa/glsa-200701-21.xml"},{"name":"http://web.mit.edu/kerberos/www/advisories/MITKRB5-SA-2006-002-rpc.txt","refsource":"CONFIRM","url":"http://web.mit.edu/kerberos/www/advisories/MITKRB5-SA-2006-002-rpc.txt"},{"name":"OpenPKG-SA-2007.006","refsource":"OPENPKG","url":"http://www.openpkg.com/security/advisories/OpenPKG-SA-2007.006.html"},{"name":"FEDORA-2007-033","refsource":"FEDORA","url":"http://fedoranews.org/cms/node/2375"},{"name":"TA07-109A","refsource":"CERT","url":"http://www.us-cert.gov/cas/techalerts/TA07-109A.html"},{"name":"https://issues.rpath.com/browse/RPL-925","refsource":"CONFIRM","url":"https://issues.rpath.com/browse/RPL-925"},{"name":"23707","refsource":"SECUNIA","url":"http://secunia.com/advisories/23707"},{"name":"ADV-2007-0111","refsource":"VUPEN","url":"http://www.vupen.com/english/advisories/2007/0111"},{"name":"20070109 MITKRB5-SA-2006-002: kadmind (via RPC lib) calls uninitialized function pointer","refsource":"BUGTRAQ","url":"http://www.securityfocus.com/archive/1/456406/100/0/threaded"},{"name":"23772","refsource":"SECUNIA","url":"http://secunia.com/advisories/23772"},{"name":"23701","refsource":"SECUNIA","url":"http://secunia.com/advisories/23701"},{"name":"APPLE-SA-2007-04-19","refsource":"APPLE","url":"http://lists.apple.com/archives/Security-announce/2007/Apr/msg00001.html"},{"name":"ADV-2007-1470","refsource":"VUPEN","url":"http://www.vupen.com/english/advisories/2007/1470"},{"name":"kerberos-rpc-code-execution(31422)","refsource":"XF","url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/31422"}]}}}},"cveMetadata":{"assignerOrgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","assignerShortName":"mitre","cveId":"CVE-2006-6143","datePublished":"2007-01-10T00:00:00.000Z","dateReserved":"2006-11-28T00:00:00.000Z","dateUpdated":"2024-08-07T20:19:34.415Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2006-12-31 05:00:00","lastModifiedDate":"2026-04-23 00:35:47","problem_types":["CWE-824","n/a"],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:M/Au:N/C:C/I:C/A:C","baseScore":9.3,"accessVector":"NETWORK","accessComplexity":"MEDIUM","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":8.6,"impactScore":10,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:mit:kerberos_5:1.4:*:*:*:*:*:*:*","matchCriteriaId":"52F0EECF-7787-442B-9888-D22F7D36C3DE"},{"vulnerable":true,"criteria":"cpe:2.3:a:mit:kerberos_5:1.4.1:*:*:*:*:*:*:*","matchCriteriaId":"EF344AED-BE00-4A9B-A9DE-C6FB0BEE4617"},{"vulnerable":true,"criteria":"cpe:2.3:a:mit:kerberos_5:1.4.2:*:*:*:*:*:*:*","matchCriteriaId":"567406CA-58D8-453E-B36E-6D1D2EFC8EB6"},{"vulnerable":true,"criteria":"cpe:2.3:a:mit:kerberos_5:1.4.3:*:*:*:*:*:*:*","matchCriteriaId":"7830E03F-A813-4E35-893E-BF27395CEFB3"},{"vulnerable":true,"criteria":"cpe:2.3:a:mit:kerberos_5:1.4.4:*:*:*:*:*:*:*","matchCriteriaId":"7764411E-C056-4696-822E-235F2620FAC4"},{"vulnerable":true,"criteria":"cpe:2.3:a:mit:kerberos_5:1.5:*:*:*:*:*:*:*","matchCriteriaId":"4DD315AE-868B-4061-BF01-CDBF59B02499"},{"vulnerable":true,"criteria":"cpe:2.3:a:mit:kerberos_5:1.5.1:*:*:*:*:*:*:*","matchCriteriaId":"B639DD5F-71C7-4D9B-BA5C-51CAF64140B6"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:canonical:ubuntu_linux:6.06:*:*:*:*:*:*:*","matchCriteriaId":"454A5D17-B171-4F1F-9E0B-F18D1E5CA9FD"},{"vulnerable":true,"criteria":"cpe:2.3:o:canonical:ubuntu_linux:6.10:*:*:*:*:*:*:*","matchCriteriaId":"23E304C9-F780-4358-A58D-1E4C93977704"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2006","CveId":"6143","Ordinal":"1","Title":"CVE-2006-6143","CVE":"CVE-2006-6143","Year":"2006"},"notes":[{"CveYear":"2006","CveId":"6143","Ordinal":"1","NoteData":"The RPC library in Kerberos 5 1.4 through 1.4.4, and 1.5 through 1.5.1, as used in Kerberos administration daemon (kadmind) and other products that use this library, calls an uninitialized function pointer in freed memory, which allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via unspecified vectors.","Type":"Description","Title":"CVE-2006-6143"},{"CveYear":"2006","CveId":"6143","Ordinal":"2","NoteData":"2007-01-09","Type":"Other","Title":"Published"},{"CveYear":"2006","CveId":"6143","Ordinal":"3","NoteData":"2018-10-17","Type":"Other","Title":"Modified"}]}}}