{"api_version":"1","generated_at":"2026-07-23T08:40:04+00:00","cve":"CVE-2007-0957","urls":{"html":"https://cve.report/CVE-2007-0957","api":"https://cve.report/api/cve/CVE-2007-0957.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2007-0957","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2007-0957"},"summary":{"title":"CVE-2007-0957","description":"Stack-based buffer overflow in the krb5_klog_syslog function in the kadm5 library, as used by the Kerberos administration daemon (kadmind) and Key Distribution Center (KDC), in MIT krb5 before 1.6.1 allows remote authenticated users to execute arbitrary code and modify the Kerberos key database via crafted arguments, possibly involving certain format string specifiers.","state":"PUBLISHED","assigner":"mitre","published_at":"2007-04-06 01:19:00","updated_at":"2026-04-23 00:35:47"},"problem_types":["CWE-787","n/a"],"metrics":[{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"9","severity":"","vector":"AV:N/AC:L/Au:S/C:C/I:C/A:C","data":{"version":"2.0","vectorString":"AV:N/AC:L/Au:S/C:C/I:C/A:C","baseScore":9,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"SINGLE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"}}],"references":[{"url":"http://secunia.com/advisories/24736","name":"http://secunia.com/advisories/24736","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"],"title":"Debian update for krb5 - Advisories - Secunia","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/24740","name":"http://secunia.com/advisories/24740","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"],"title":"Kerberos Multiple Vulnerabilities - Advisories - Secunia","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/25464","name":"http://secunia.com/advisories/25464","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"],"title":"Sun Solaris Kerberos kadm5 Library Vulnerability - Advisories - Secunia","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://docs.info.apple.com/article.html?artnum=305391","name":"http://docs.info.apple.com/article.html?artnum=305391","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"],"title":"About Security Update 2007-004","mime":"text/html","httpstatus":"-1","archivestatus":"200"},{"url":"http://www.kb.cert.org/vuls/id/704024","name":"http://www.kb.cert.org/vuls/id/704024","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","US Government Resource"],"title":"US-CERT Vulnerability Note VU#704024","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.vupen.com/english/advisories/2007/1250","name":"http://www.vupen.com/english/advisories/2007/1250","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"],"title":"Webmail : Solution de messagerie professionnelle - OVHcloud- OVH","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.securitytracker.com/id?1017849","name":"http://www.securitytracker.com/id?1017849","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","VDB Entry"],"title":"Kerberos kadmin/KDC Stack Overflow in krb5_klog_syslog() Lets Remote Authenticated Users Execute Arbitrary Code - SecurityTracker","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10757","name":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10757","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link","Third Party Advisory"],"title":"Repository  /  Oval Repository","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/24817","name":"http://secunia.com/advisories/24817","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"],"title":"SGI update for krb5 - Advisories - Secunia","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.securityfocus.com/archive/1/464592/100/0/threaded","name":"http://www.securityfocus.com/archive/1/464592/100/0/threaded","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","VDB Entry"],"title":"SecurityFocus","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://lists.apple.com/archives/Security-announce/2007/Apr/msg00001.html","name":"http://lists.apple.com/archives/Security-announce/2007/Apr/msg00001.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Mailing List","Third Party Advisory"],"title":"APPLE-SA-2007-04-19 Security Update 2007-004","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.mandriva.com/security/advisories?name=MDKSA-2007:077","name":"http://www.mandriva.com/security/advisories?name=MDKSA-2007:077","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"],"title":"Advisories - Mandriva Linux","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/24735","name":"http://secunia.com/advisories/24735","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"],"title":"Gentoo update for mit-krb5 - Advisories - Secunia","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.securityfocus.com/bid/23285","name":"http://www.securityfocus.com/bid/23285","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","VDB Entry"],"title":"MIT Kerberos 5 KAdminD Server Stack Buffer Overflow Vulnerability","mime":"text/html","httpstatus":"200","archivestatus":"0"},{"url":"http://sunsolve.sun.com/search/document.do?assetkey=1-26-102930-1","name":"http://sunsolve.sun.com/search/document.do?assetkey=1-26-102930-1","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"],"title":"","mime":"","httpstatus":"-1","archivestatus":"404"},{"url":"ftp://patches.sgi.com/support/free/security/advisories/20070401-01-P.asc","name":"ftp://patches.sgi.com/support/free/security/advisories/20070401-01-P.asc","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"],"title":"","mime":"","httpstatus":"-1","archivestatus":"404"},{"url":"http://lists.suse.com/archive/suse-security-announce/2007-Apr/0001.html","name":"http://lists.suse.com/archive/suse-security-announce/2007-Apr/0001.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Broken Link"],"title":"SuSE Security announcements: [suse-security-announce] SUSE Security Announcement: krb5 (SUSE-SA:2007:025)","mime":"text/html","httpstatus":"404","archivestatus":"200"},{"url":"http://secunia.com/advisories/24757","name":"http://secunia.com/advisories/24757","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"],"title":"rPath updates for krb5 - Advisories - Secunia","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.redhat.com/support/errata/RHSA-2007-0095.html","name":"http://www.redhat.com/support/errata/RHSA-2007-0095.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"],"title":"Support","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/33411","name":"https://exchange.xforce.ibmcloud.com/vulnerabilities/33411","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","VDB Entry"],"title":"IBM X-Force Exchange","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/24786","name":"http://secunia.com/advisories/24786","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"],"title":"SUSE update for krb5 - Advisories - Secunia","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.securityfocus.com/archive/1/464814/30/7170/threaded","name":"http://www.securityfocus.com/archive/1/464814/30/7170/threaded","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","VDB Entry"],"title":"SecurityFocus","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.vupen.com/english/advisories/2007/1470","name":"http://www.vupen.com/english/advisories/2007/1470","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"],"title":"Webmail - OVH","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/24785","name":"http://secunia.com/advisories/24785","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"],"title":"Mandriva update for krb5 - Advisories - Secunia","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/24798","name":"http://secunia.com/advisories/24798","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"],"title":"Novell Kerberos KDC \"krb5_klog_syslog()\" Buffer Overflow - Advisories - Secunia","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.debian.org/security/2007/dsa-1276","name":"http://www.debian.org/security/2007/dsa-1276","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"],"title":"Debian -- Security Information -- DSA-1276-1 krb5","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.us-cert.gov/cas/techalerts/TA07-109A.html","name":"http://www.us-cert.gov/cas/techalerts/TA07-109A.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","US Government Resource"],"title":"US-CERT Technical Cyber Security Alert TA07-109A -- Apple Updates for Multiple Vulnerabilities","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/24750","name":"http://secunia.com/advisories/24750","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"],"title":"Red Hat update for krb5 - Advisories - Secunia","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.vupen.com/english/advisories/2007/1218","name":"http://www.vupen.com/english/advisories/2007/1218","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"],"title":"Webmail : Solution de messagerie professionnelle - OVHcloud- OVH","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://web.mit.edu/kerberos/www/advisories/MITKRB5-SA-2007-002-syslog.txt","name":"http://web.mit.edu/kerberos/www/advisories/MITKRB5-SA-2007-002-syslog.txt","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"],"title":"","mime":"text/plain","httpstatus":"200","archivestatus":"200"},{"url":"http://www.securityfocus.com/archive/1/464666/100/0/threaded","name":"http://www.securityfocus.com/archive/1/464666/100/0/threaded","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","VDB Entry"],"title":"SecurityFocus","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.vupen.com/english/advisories/2007/1983","name":"http://www.vupen.com/english/advisories/2007/1983","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"],"title":"Webmail : Solution de messagerie professionnelle - OVHcloud- OVH","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/24966","name":"http://secunia.com/advisories/24966","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"],"title":"Mac OS X Security Update Fixes Multiple Vulnerabilities - Advisories - Secunia","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/24706","name":"http://secunia.com/advisories/24706","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"],"title":"Ubuntu update for krb5 - Advisories - Secunia","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.us-cert.gov/cas/techalerts/TA07-093B.html","name":"http://www.us-cert.gov/cas/techalerts/TA07-093B.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","US Government Resource"],"title":"US-CERT Technical Cyber Security Alert TA07-093B -- MIT Kerberos Vulnerabilities","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.ubuntu.com/usn/usn-449-1","name":"http://www.ubuntu.com/usn/usn-449-1","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"],"title":"USN-449-1: krb5 vulnerabilities | Ubuntu","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://security.gentoo.org/glsa/glsa-200704-02.xml","name":"http://security.gentoo.org/glsa/glsa-200704-02.xml","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"],"title":"Gentoo Linux Documentation\n--\n  MIT Kerberos 5: Arbitrary remote code execution","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://www.cve.org/CVERecord?id=CVE-2007-0957","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2007-0957","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2007","cve_id":"957","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"canonical","cpe5":"ubuntu_linux","cpe6":"5.10","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2007","cve_id":"957","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"canonical","cpe5":"ubuntu_linux","cpe6":"6.06","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2007","cve_id":"957","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"canonical","cpe5":"ubuntu_linux","cpe6":"6.10","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2007","cve_id":"957","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"debian","cpe5":"debian_linux","cpe6":"3.1","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2007","cve_id":"957","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"debian","cpe5":"debian_linux","cpe6":"4.0","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2007","cve_id":"957","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"mit","cpe5":"kerberos_5","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-07T12:34:21.284Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"name":"oval:org.mitre.oval:def:10757","tags":["vdb-entry","signature","x_refsource_OVAL","x_transferred"],"url":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10757"},{"name":"ADV-2007-1218","tags":["vdb-entry","x_refsource_VUPEN","x_transferred"],"url":"http://www.vupen.com/english/advisories/2007/1218"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://web.mit.edu/kerberos/www/advisories/MITKRB5-SA-2007-002-syslog.txt"},{"name":"20070403 MITKRB5-SA-2007-002: KDC, kadmind stack overflow in krb5_klog_syslog [CVE-2007-0957]","tags":["mailing-list","x_refsource_BUGTRAQ","x_transferred"],"url":"http://www.securityfocus.com/archive/1/464592/100/0/threaded"},{"name":"20070401-01-P","tags":["vendor-advisory","x_refsource_SGI","x_transferred"],"url":"ftp://patches.sgi.com/support/free/security/advisories/20070401-01-P.asc"},{"name":"24966","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/24966"},{"name":"24706","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/24706"},{"name":"24798","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/24798"},{"name":"24740","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/24740"},{"name":"RHSA-2007:0095","tags":["vendor-advisory","x_refsource_REDHAT","x_transferred"],"url":"http://www.redhat.com/support/errata/RHSA-2007-0095.html"},{"name":"ADV-2007-1983","tags":["vdb-entry","x_refsource_VUPEN","x_transferred"],"url":"http://www.vupen.com/english/advisories/2007/1983"},{"name":"24786","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/24786"},{"name":"102930","tags":["vendor-advisory","x_refsource_SUNALERT","x_transferred"],"url":"http://sunsolve.sun.com/search/document.do?assetkey=1-26-102930-1"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://docs.info.apple.com/article.html?artnum=305391"},{"name":"TA07-093B","tags":["third-party-advisory","x_refsource_CERT","x_transferred"],"url":"http://www.us-cert.gov/cas/techalerts/TA07-093B.html"},{"name":"20070405 FLEA-2007-0008-1: krb5","tags":["mailing-list","x_refsource_BUGTRAQ","x_transferred"],"url":"http://www.securityfocus.com/archive/1/464814/30/7170/threaded"},{"name":"DSA-1276","tags":["vendor-advisory","x_refsource_DEBIAN","x_transferred"],"url":"http://www.debian.org/security/2007/dsa-1276"},{"name":"24735","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/24735"},{"name":"23285","tags":["vdb-entry","x_refsource_BID","x_transferred"],"url":"http://www.securityfocus.com/bid/23285"},{"name":"TA07-109A","tags":["third-party-advisory","x_refsource_CERT","x_transferred"],"url":"http://www.us-cert.gov/cas/techalerts/TA07-109A.html"},{"name":"24750","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/24750"},{"name":"ADV-2007-1250","tags":["vdb-entry","x_refsource_VUPEN","x_transferred"],"url":"http://www.vupen.com/english/advisories/2007/1250"},{"name":"24817","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/24817"},{"name":"24757","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/24757"},{"name":"kerberos-krb5klogsyslog-bo(33411)","tags":["vdb-entry","x_refsource_XF","x_transferred"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/33411"},{"name":"VU#704024","tags":["third-party-advisory","x_refsource_CERT-VN","x_transferred"],"url":"http://www.kb.cert.org/vuls/id/704024"},{"name":"1017849","tags":["vdb-entry","x_refsource_SECTRACK","x_transferred"],"url":"http://www.securitytracker.com/id?1017849"},{"name":"SUSE-SA:2007:025","tags":["vendor-advisory","x_refsource_SUSE","x_transferred"],"url":"http://lists.suse.com/archive/suse-security-announce/2007-Apr/0001.html"},{"name":"24785","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/24785"},{"name":"25464","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/25464"},{"name":"MDKSA-2007:077","tags":["vendor-advisory","x_refsource_MANDRIVA","x_transferred"],"url":"http://www.mandriva.com/security/advisories?name=MDKSA-2007:077"},{"name":"USN-449-1","tags":["vendor-advisory","x_refsource_UBUNTU","x_transferred"],"url":"http://www.ubuntu.com/usn/usn-449-1"},{"name":"APPLE-SA-2007-04-19","tags":["vendor-advisory","x_refsource_APPLE","x_transferred"],"url":"http://lists.apple.com/archives/Security-announce/2007/Apr/msg00001.html"},{"name":"ADV-2007-1470","tags":["vdb-entry","x_refsource_VUPEN","x_transferred"],"url":"http://www.vupen.com/english/advisories/2007/1470"},{"name":"24736","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/24736"},{"name":"20070404 rPSA-2007-0063-1 krb5 krb5-server krb5-services krb5-test krb5-workstation","tags":["mailing-list","x_refsource_BUGTRAQ","x_transferred"],"url":"http://www.securityfocus.com/archive/1/464666/100/0/threaded"},{"name":"GLSA-200704-02","tags":["vendor-advisory","x_refsource_GENTOO","x_transferred"],"url":"http://security.gentoo.org/glsa/glsa-200704-02.xml"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"datePublic":"2007-04-03T00:00:00.000Z","descriptions":[{"lang":"en","value":"Stack-based buffer overflow in the krb5_klog_syslog function in the kadm5 library, as used by the Kerberos administration daemon (kadmind) and Key Distribution Center (KDC), in MIT krb5 before 1.6.1 allows remote authenticated users to execute arbitrary code and modify the Kerberos key database via crafted arguments, possibly involving certain format string specifiers."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2018-10-16T14:57:01.000Z","orgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","shortName":"mitre"},"references":[{"name":"oval:org.mitre.oval:def:10757","tags":["vdb-entry","signature","x_refsource_OVAL"],"url":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10757"},{"name":"ADV-2007-1218","tags":["vdb-entry","x_refsource_VUPEN"],"url":"http://www.vupen.com/english/advisories/2007/1218"},{"tags":["x_refsource_CONFIRM"],"url":"http://web.mit.edu/kerberos/www/advisories/MITKRB5-SA-2007-002-syslog.txt"},{"name":"20070403 MITKRB5-SA-2007-002: KDC, kadmind stack overflow in krb5_klog_syslog [CVE-2007-0957]","tags":["mailing-list","x_refsource_BUGTRAQ"],"url":"http://www.securityfocus.com/archive/1/464592/100/0/threaded"},{"name":"20070401-01-P","tags":["vendor-advisory","x_refsource_SGI"],"url":"ftp://patches.sgi.com/support/free/security/advisories/20070401-01-P.asc"},{"name":"24966","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/24966"},{"name":"24706","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/24706"},{"name":"24798","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/24798"},{"name":"24740","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/24740"},{"name":"RHSA-2007:0095","tags":["vendor-advisory","x_refsource_REDHAT"],"url":"http://www.redhat.com/support/errata/RHSA-2007-0095.html"},{"name":"ADV-2007-1983","tags":["vdb-entry","x_refsource_VUPEN"],"url":"http://www.vupen.com/english/advisories/2007/1983"},{"name":"24786","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/24786"},{"name":"102930","tags":["vendor-advisory","x_refsource_SUNALERT"],"url":"http://sunsolve.sun.com/search/document.do?assetkey=1-26-102930-1"},{"tags":["x_refsource_CONFIRM"],"url":"http://docs.info.apple.com/article.html?artnum=305391"},{"name":"TA07-093B","tags":["third-party-advisory","x_refsource_CERT"],"url":"http://www.us-cert.gov/cas/techalerts/TA07-093B.html"},{"name":"20070405 FLEA-2007-0008-1: krb5","tags":["mailing-list","x_refsource_BUGTRAQ"],"url":"http://www.securityfocus.com/archive/1/464814/30/7170/threaded"},{"name":"DSA-1276","tags":["vendor-advisory","x_refsource_DEBIAN"],"url":"http://www.debian.org/security/2007/dsa-1276"},{"name":"24735","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/24735"},{"name":"23285","tags":["vdb-entry","x_refsource_BID"],"url":"http://www.securityfocus.com/bid/23285"},{"name":"TA07-109A","tags":["third-party-advisory","x_refsource_CERT"],"url":"http://www.us-cert.gov/cas/techalerts/TA07-109A.html"},{"name":"24750","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/24750"},{"name":"ADV-2007-1250","tags":["vdb-entry","x_refsource_VUPEN"],"url":"http://www.vupen.com/english/advisories/2007/1250"},{"name":"24817","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/24817"},{"name":"24757","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/24757"},{"name":"kerberos-krb5klogsyslog-bo(33411)","tags":["vdb-entry","x_refsource_XF"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/33411"},{"name":"VU#704024","tags":["third-party-advisory","x_refsource_CERT-VN"],"url":"http://www.kb.cert.org/vuls/id/704024"},{"name":"1017849","tags":["vdb-entry","x_refsource_SECTRACK"],"url":"http://www.securitytracker.com/id?1017849"},{"name":"SUSE-SA:2007:025","tags":["vendor-advisory","x_refsource_SUSE"],"url":"http://lists.suse.com/archive/suse-security-announce/2007-Apr/0001.html"},{"name":"24785","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/24785"},{"name":"25464","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/25464"},{"name":"MDKSA-2007:077","tags":["vendor-advisory","x_refsource_MANDRIVA"],"url":"http://www.mandriva.com/security/advisories?name=MDKSA-2007:077"},{"name":"USN-449-1","tags":["vendor-advisory","x_refsource_UBUNTU"],"url":"http://www.ubuntu.com/usn/usn-449-1"},{"name":"APPLE-SA-2007-04-19","tags":["vendor-advisory","x_refsource_APPLE"],"url":"http://lists.apple.com/archives/Security-announce/2007/Apr/msg00001.html"},{"name":"ADV-2007-1470","tags":["vdb-entry","x_refsource_VUPEN"],"url":"http://www.vupen.com/english/advisories/2007/1470"},{"name":"24736","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/24736"},{"name":"20070404 rPSA-2007-0063-1 krb5 krb5-server krb5-services krb5-test krb5-workstation","tags":["mailing-list","x_refsource_BUGTRAQ"],"url":"http://www.securityfocus.com/archive/1/464666/100/0/threaded"},{"name":"GLSA-200704-02","tags":["vendor-advisory","x_refsource_GENTOO"],"url":"http://security.gentoo.org/glsa/glsa-200704-02.xml"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"cve@mitre.org","ID":"CVE-2007-0957","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"Stack-based buffer overflow in the krb5_klog_syslog function in the kadm5 library, as used by the Kerberos administration daemon (kadmind) and Key Distribution Center (KDC), in MIT krb5 before 1.6.1 allows remote authenticated users to execute arbitrary code and modify the Kerberos key database via crafted arguments, possibly involving certain format string specifiers."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"oval:org.mitre.oval:def:10757","refsource":"OVAL","url":"https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10757"},{"name":"ADV-2007-1218","refsource":"VUPEN","url":"http://www.vupen.com/english/advisories/2007/1218"},{"name":"http://web.mit.edu/kerberos/www/advisories/MITKRB5-SA-2007-002-syslog.txt","refsource":"CONFIRM","url":"http://web.mit.edu/kerberos/www/advisories/MITKRB5-SA-2007-002-syslog.txt"},{"name":"20070403 MITKRB5-SA-2007-002: KDC, kadmind stack overflow in krb5_klog_syslog [CVE-2007-0957]","refsource":"BUGTRAQ","url":"http://www.securityfocus.com/archive/1/464592/100/0/threaded"},{"name":"20070401-01-P","refsource":"SGI","url":"ftp://patches.sgi.com/support/free/security/advisories/20070401-01-P.asc"},{"name":"24966","refsource":"SECUNIA","url":"http://secunia.com/advisories/24966"},{"name":"24706","refsource":"SECUNIA","url":"http://secunia.com/advisories/24706"},{"name":"24798","refsource":"SECUNIA","url":"http://secunia.com/advisories/24798"},{"name":"24740","refsource":"SECUNIA","url":"http://secunia.com/advisories/24740"},{"name":"RHSA-2007:0095","refsource":"REDHAT","url":"http://www.redhat.com/support/errata/RHSA-2007-0095.html"},{"name":"ADV-2007-1983","refsource":"VUPEN","url":"http://www.vupen.com/english/advisories/2007/1983"},{"name":"24786","refsource":"SECUNIA","url":"http://secunia.com/advisories/24786"},{"name":"102930","refsource":"SUNALERT","url":"http://sunsolve.sun.com/search/document.do?assetkey=1-26-102930-1"},{"name":"http://docs.info.apple.com/article.html?artnum=305391","refsource":"CONFIRM","url":"http://docs.info.apple.com/article.html?artnum=305391"},{"name":"TA07-093B","refsource":"CERT","url":"http://www.us-cert.gov/cas/techalerts/TA07-093B.html"},{"name":"20070405 FLEA-2007-0008-1: krb5","refsource":"BUGTRAQ","url":"http://www.securityfocus.com/archive/1/464814/30/7170/threaded"},{"name":"DSA-1276","refsource":"DEBIAN","url":"http://www.debian.org/security/2007/dsa-1276"},{"name":"24735","refsource":"SECUNIA","url":"http://secunia.com/advisories/24735"},{"name":"23285","refsource":"BID","url":"http://www.securityfocus.com/bid/23285"},{"name":"TA07-109A","refsource":"CERT","url":"http://www.us-cert.gov/cas/techalerts/TA07-109A.html"},{"name":"24750","refsource":"SECUNIA","url":"http://secunia.com/advisories/24750"},{"name":"ADV-2007-1250","refsource":"VUPEN","url":"http://www.vupen.com/english/advisories/2007/1250"},{"name":"24817","refsource":"SECUNIA","url":"http://secunia.com/advisories/24817"},{"name":"24757","refsource":"SECUNIA","url":"http://secunia.com/advisories/24757"},{"name":"kerberos-krb5klogsyslog-bo(33411)","refsource":"XF","url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/33411"},{"name":"VU#704024","refsource":"CERT-VN","url":"http://www.kb.cert.org/vuls/id/704024"},{"name":"1017849","refsource":"SECTRACK","url":"http://www.securitytracker.com/id?1017849"},{"name":"SUSE-SA:2007:025","refsource":"SUSE","url":"http://lists.suse.com/archive/suse-security-announce/2007-Apr/0001.html"},{"name":"24785","refsource":"SECUNIA","url":"http://secunia.com/advisories/24785"},{"name":"25464","refsource":"SECUNIA","url":"http://secunia.com/advisories/25464"},{"name":"MDKSA-2007:077","refsource":"MANDRIVA","url":"http://www.mandriva.com/security/advisories?name=MDKSA-2007:077"},{"name":"USN-449-1","refsource":"UBUNTU","url":"http://www.ubuntu.com/usn/usn-449-1"},{"name":"APPLE-SA-2007-04-19","refsource":"APPLE","url":"http://lists.apple.com/archives/Security-announce/2007/Apr/msg00001.html"},{"name":"ADV-2007-1470","refsource":"VUPEN","url":"http://www.vupen.com/english/advisories/2007/1470"},{"name":"24736","refsource":"SECUNIA","url":"http://secunia.com/advisories/24736"},{"name":"20070404 rPSA-2007-0063-1 krb5 krb5-server krb5-services krb5-test krb5-workstation","refsource":"BUGTRAQ","url":"http://www.securityfocus.com/archive/1/464666/100/0/threaded"},{"name":"GLSA-200704-02","refsource":"GENTOO","url":"http://security.gentoo.org/glsa/glsa-200704-02.xml"}]}}}},"cveMetadata":{"assignerOrgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","assignerShortName":"mitre","cveId":"CVE-2007-0957","datePublished":"2007-04-06T01:00:00.000Z","dateReserved":"2007-02-14T00:00:00.000Z","dateUpdated":"2024-08-07T12:34:21.284Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2007-04-06 01:19:00","lastModifiedDate":"2026-04-23 00:35:47","problem_types":["CWE-787","n/a"],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:S/C:C/I:C/A:C","baseScore":9,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"SINGLE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":8,"impactScore":10,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:mit:kerberos_5:*:*:*:*:*:*:*:*","versionEndExcluding":"1.6.1","matchCriteriaId":"32E1DA69-923F-4240-94DA-DB837EF1DCB0"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:3.1:*:*:*:*:*:*:*","matchCriteriaId":"A2E0C1F8-31F5-4F61-9DF7-E49B43D3C873"},{"vulnerable":true,"criteria":"cpe:2.3:o:debian:debian_linux:4.0:*:*:*:*:*:*:*","matchCriteriaId":"0F92AB32-E7DE-43F4-B877-1F41FA162EC7"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:canonical:ubuntu_linux:5.10:*:*:*:*:*:*:*","matchCriteriaId":"0FA3A32E-445A-4D39-A8D5-75F5370AD23D"},{"vulnerable":true,"criteria":"cpe:2.3:o:canonical:ubuntu_linux:6.06:*:*:*:*:*:*:*","matchCriteriaId":"454A5D17-B171-4F1F-9E0B-F18D1E5CA9FD"},{"vulnerable":true,"criteria":"cpe:2.3:o:canonical:ubuntu_linux:6.10:*:*:*:*:*:*:*","matchCriteriaId":"23E304C9-F780-4358-A58D-1E4C93977704"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2007","CveId":"957","Ordinal":"1","Title":"CVE-2007-0957","CVE":"CVE-2007-0957","Year":"2007"},"notes":[{"CveYear":"2007","CveId":"957","Ordinal":"1","NoteData":"Stack-based buffer overflow in the krb5_klog_syslog function in the kadm5 library, as used by the Kerberos administration daemon (kadmind) and Key Distribution Center (KDC), in MIT krb5 before 1.6.1 allows remote authenticated users to execute arbitrary code and modify the Kerberos key database via crafted arguments, possibly involving certain format string specifiers.","Type":"Description","Title":"CVE-2007-0957"},{"CveYear":"2007","CveId":"957","Ordinal":"2","NoteData":"2007-04-05","Type":"Other","Title":"Published"},{"CveYear":"2007","CveId":"957","Ordinal":"3","NoteData":"2018-10-16","Type":"Other","Title":"Modified"}]}}}