CVE-2006-5989
Publication date 20 November 2006
Last updated 17 July 2025
Ubuntu priority
Description
Off-by-one error in the der_get_oid function in mod_auth_kerb 5.0 allows remote attackers to cause a denial of service (crash) via a crafted Kerberos message that triggers a heap-based buffer overflow in the component array.
Status
| Package | Ubuntu Release | Status |
|---|---|---|
| libapache-mod-auth-kerb | ||