[krbdev.mit.edu #6636] Segfault with unused pkinit

Tom Yu via RT rt-comment at krbdev.mit.edu
Tue Jan 12 18:11:44 EST 2010


Thanks.  This is a known vulnerability, and we have already issued a
patch and advisory.  (ticket #6608, MITKRB5-SA-2009-003 CVE-2009-3295)
It will also be fixed in the upcoming 1.7.1 release.  As far as we can
tell, it appears to have nothing (directly) to do with pkinit, despite
what you see in your logs.




More information about the krb5-bugs mailing list