New Search

Kerberos Unkeyed Checksum Vulnerability

oval:org.mitre.oval:def:12432

Kerberos in Microsoft Windows XP SP2 and SP3 and Server 2003 SP2 supports weak hashing algorithms which allows local users to gain privileges by operating a service that sends crafted service tickets as demonstrated by the CRC32 algorithm aka "Kerberos Unkeyed Checksum Vulnerability."

Family:
windows
Status:
ACCEPTED
Platform(s):
  • Microsoft Windows Server 2003
  • Microsoft Windows XP
Class:
vulnerability
Reference(s):
  • CVE-2011-0043
Product(s):