Bit more info ...

Story: Kerberos flaw opens apps to attackTotal Replies: 1
Author Content
dominic

Jul 14, 2005
9:22 PM EDT
Well this article has no meat. An earlier article on the same site at least mentions the flaw which was a double-free vulnerability (same memory is freed twice).

http://news.zdnet.co.uk/internet/security/0,39020375,3916527...

Now, I'm no cracker, but that sounds like a pretty hard target to hit... Now as for the part about Microsoft's version not being vulnerable, I'd like to see the code to believe it ;)
dominic

Jul 14, 2005
9:26 PM EDT
Actually, they do give the link to the Kerberos advisory but don't include the info from them. One is another double-free flaw and the other is a buffer overflow.

There's only one possible response: Abandon all logic and Live In Fear(tm)!

Posting in this forum is limited to members of the group: [ForumMods, SITEADMINS, MEMBERS.]

Becoming a member of LXer is easy and free. Join Us!