UPDATE: MITKRB5-SA-2009-003 [CVE-2009-3295] KDC denial of service in cross-realm referral processing

Tom Yu <[email protected]> Mon, 04 Jan 2010 23:59:11 -0500
Newsgroups gmane.comp.encryption.kerberos.announce
Message-ID <[email protected]>
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1


Updated to reflect the need to authenticate for successful
exploitation.  This decreases the severity level of the vulnerability.

    http://web.mit.edu/kerberos/advisories/MITKRB5-SA-2009-003.txt
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.8 (SunOS)

iEYEARECAAYFAktCxyMACgkQSO8fWy4vZo5uQQCgoVnIei7rT8AaaDlGFKtk+JkH
lfsAnRCL4Ilj4kRnLOdCI68Dyxm0rRbl
=5SzI
-----END PGP SIGNATURE-----