CVE-2006-5989

Publication date

2006-11-21 02:00:00

Family

redhat

State

PUBLISHED

Description

Off-by-one error in the der_get_oid function in mod_auth_kerb 5.0 allows remote attackers to cause a denial of service (crash) via a crafted Kerberos message that triggers a heap-based buffer overflow in the component array.