CVE-2007-3999
librpcsecgss - arbitrary code execution
EPSS 56.1%
Description
Stack-based buffer overflow in the svcauth_gss_validate function in lib/rpc/svc_auth_gss.c in the RPCSEC_GSS RPC library (librpcsecgss) in MIT Kerberos 5 (krb5) 1.4 through 1.6.2, as used by the Kerberos administration daemon (kadmind) and some third-party applications that use krb5, allows remote attackers to cause a denial of service (daemon crash) and probably execute arbitrary code via a long string in an RPC message.
How to fix CVE-2007-3999
To remediate CVE-2007-3999, upgrade the affected package to a fixed version below.
- Debian/krb5—upgrade to 1.6.dfsg.1-7 or later
- —upgrade to 1.4.4-7etch4 or later
- —upgrade to 0.14-2etch1 or later
Is CVE-2007-3999 being exploited?
Likely — EPSS is 56.1%, placing CVE-2007-3999 in the top tier of vulnerabilities by exploitation probability. Prioritise patching.
Affected packages (3)
- from 0, < 1.6.dfsg.1-7
- from 0, < 1.4.4-7etch4
- from 0, < 0.14-2etch1