Double Free in Kerberos 5 - CVE-2023-39975

 

Double Free in Kerberos 5 - CVE-2023-39975

Published: August 10, 2023 / Updated: August 16, 2023


Vulnerability identifier: #VU79344
CSH Severity: Medium
CVSS v4: 8.7 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2023-39975
CWE-ID: CWE-415
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.

The vulnerability exists due to a boundary error within the free_req_info(). A remote attacker send a specially crafted request to trigger a double free error and perform a denial of service (DoS) attack.


Affected software

Kerberos 5
Amazon Linux AMI
Gentoo Linux
Oracle Linux
Red Hat Enterprise Linux for IBM z Systems
Red Hat Enterprise Linux for Power, little endian
Red Hat Enterprise Linux for ARM 64
Red Hat Enterprise Linux for x86_64
Fedora
Red Hat OpenShift Builds
cert-manager Operator for Red Hat OpenShift
OpenShift Logging
Red Hat Advanced Cluster Management for Kubernetes
Custom Metrics Autoscaler Operator for Red Hat OpenShift
Red Hat Migration Toolkit for Applications
Juniper Cloud Native Router
IBM Cloud Pak for Watson AIOps
Storage Resource Manager
Storage Ceph
OpenShift Virtualization
OpenShift Container Platform for Windows Containers
OpenShift Service Mesh
MySQL Server
MySQL Cluster
IBM Security Guardium
Network Observability plugin for the Openshift Console
krb5 (Red Hat package)
app-crypt/mit-krb5
krb5
Dell EMC Storage Monitoring and Reporting (SMR)
Red Hat Ceph Storage
Junos cRPD

How to mitigate CVE-2023-39975

Install updates from vendor's website.

Kerberos 5 - update to 1.21.2
Red Hat OpenShift Builds - update to 1.0.1
cert-manager Operator for Red Hat OpenShift - addressed in versions 1.11.5, 1.12.1
OpenShift Virtualization - addressed in versions 4.13.6, 4.14.1
OpenShift Logging - update to 5.8.1
MySQL Server - update to 8.0.35
MySQL Cluster - update to 8.0.35
OpenShift Container Platform for Windows Containers - addressed in versions 9.0.1, 10.15.0
Network Observability plugin for the Openshift Console - update to 1.5.0
krb5 (Red Hat package) - update to 1.21.1-1.el9
app-crypt/mit-krb5 - update to 1.21.2
krb5 - update to 1.21-3
krb5 - update to 1.21-3.fc38
OpenShift Service Mesh - addressed in versions 2.4.8, 2.5.2
Red Hat Advanced Cluster Management for Kubernetes - update to 2.10.5
Custom Metrics Autoscaler Operator for Red Hat OpenShift - update to 2.12.1-376
Storage Resource Manager - update to 4.10.0.3
Dell EMC Storage Monitoring and Reporting (SMR) - update to 4.10.0.3
Red Hat Ceph Storage - update to 6.1
Storage Ceph - update to 6.1z3
Red Hat Migration Toolkit for Applications - update to 6.2
Juniper Cloud Native Router - update to 23.4R1
Junos cRPD - update to 23.4R1

External References

Related Security Bulletins