Check Point Reference: | CPAI-2014-1845 |
Date Published: | 14 Oct 2014 |
Severity: | High |
Last Updated: | Tuesday 14 October, 2014 |
Source: | MIT |
Industry Reference: | CVE-2014-4342 |
Protection Provided by: |
Security Gateway |
Who is Vulnerable? | MIT Kerberos git prior to fb99962cbd063ac04c9a9 |
Vulnerability Description | A denial-of-service vulnerability exists in the MIT Kerberos 5. A remote, unauthenticated attacker can exploit this vulnerability by injecting packets into a legitimate GSSAPI session and cause the GSSAPI application to crash resulting in a denial-of-service condition. |
SmartView Tracker will log the following entries:
Attack Name: Application Servers Protection Violation.
Attack Information: MIT Kerberos Invalid RFC 1964 Token Denial of Service