Double Free in Kerberos 5 - CVE-2023-39975
Published: August 10, 2023 / Updated: August 16, 2023
Vulnerability identifier: #VU79344
CSH Severity: Medium
CVSS v4: 8.7 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2023-39975
CWE-ID: CWE-415
Exploitation vector: Remote access
Exploit availability:
No public exploit available
Vulnerability details
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to a boundary error within the free_req_info(). A remote attacker send a specially crafted request to trigger a double free error and perform a denial of service (DoS) attack.
Affected software
Kerberos 5
Amazon Linux AMI
Gentoo Linux
Oracle Linux
Red Hat Enterprise Linux for IBM z Systems
Red Hat Enterprise Linux for Power, little endian
Red Hat Enterprise Linux for ARM 64
Red Hat Enterprise Linux for x86_64
Fedora
Red Hat OpenShift Builds
cert-manager Operator for Red Hat OpenShift
OpenShift Logging
Red Hat Advanced Cluster Management for Kubernetes
Custom Metrics Autoscaler Operator for Red Hat OpenShift
Red Hat Migration Toolkit for Applications
Juniper Cloud Native Router
IBM Cloud Pak for Watson AIOps
Storage Resource Manager
Storage Ceph
OpenShift Virtualization
OpenShift Container Platform for Windows Containers
OpenShift Service Mesh
MySQL Server
MySQL Cluster
IBM Security Guardium
Network Observability plugin for the Openshift Console
krb5 (Red Hat package)
app-crypt/mit-krb5
krb5
Dell EMC Storage Monitoring and Reporting (SMR)
Red Hat Ceph Storage
Junos cRPD
Amazon Linux AMI
Gentoo Linux
Oracle Linux
Red Hat Enterprise Linux for IBM z Systems
Red Hat Enterprise Linux for Power, little endian
Red Hat Enterprise Linux for ARM 64
Red Hat Enterprise Linux for x86_64
Fedora
Red Hat OpenShift Builds
cert-manager Operator for Red Hat OpenShift
OpenShift Logging
Red Hat Advanced Cluster Management for Kubernetes
Custom Metrics Autoscaler Operator for Red Hat OpenShift
Red Hat Migration Toolkit for Applications
Juniper Cloud Native Router
IBM Cloud Pak for Watson AIOps
Storage Resource Manager
Storage Ceph
OpenShift Virtualization
OpenShift Container Platform for Windows Containers
OpenShift Service Mesh
MySQL Server
MySQL Cluster
IBM Security Guardium
Network Observability plugin for the Openshift Console
krb5 (Red Hat package)
app-crypt/mit-krb5
krb5
Dell EMC Storage Monitoring and Reporting (SMR)
Red Hat Ceph Storage
Junos cRPD
How to mitigate CVE-2023-39975
Install updates from vendor's website.
Kerberos 5 - update to 1.21.2
Red Hat OpenShift Builds - update to 1.0.1
cert-manager Operator for Red Hat OpenShift - addressed in versions 1.11.5, 1.12.1
OpenShift Virtualization - addressed in versions 4.13.6, 4.14.1
OpenShift Logging - update to 5.8.1
MySQL Server - update to 8.0.35
MySQL Cluster - update to 8.0.35
OpenShift Container Platform for Windows Containers - addressed in versions 9.0.1, 10.15.0
Network Observability plugin for the Openshift Console - update to 1.5.0
krb5 (Red Hat package) - update to 1.21.1-1.el9
app-crypt/mit-krb5 - update to 1.21.2
krb5 - update to 1.21-3
krb5 - update to 1.21-3.fc38
OpenShift Service Mesh - addressed in versions 2.4.8, 2.5.2
Red Hat Advanced Cluster Management for Kubernetes - update to 2.10.5
Custom Metrics Autoscaler Operator for Red Hat OpenShift - update to 2.12.1-376
Storage Resource Manager - update to 4.10.0.3
Dell EMC Storage Monitoring and Reporting (SMR) - update to 4.10.0.3
Red Hat Ceph Storage - update to 6.1
Storage Ceph - update to 6.1z3
Red Hat Migration Toolkit for Applications - update to 6.2
Juniper Cloud Native Router - update to 23.4R1
Junos cRPD - update to 23.4R1
Red Hat OpenShift Builds - update to 1.0.1
cert-manager Operator for Red Hat OpenShift - addressed in versions 1.11.5, 1.12.1
OpenShift Virtualization - addressed in versions 4.13.6, 4.14.1
OpenShift Logging - update to 5.8.1
MySQL Server - update to 8.0.35
MySQL Cluster - update to 8.0.35
OpenShift Container Platform for Windows Containers - addressed in versions 9.0.1, 10.15.0
Network Observability plugin for the Openshift Console - update to 1.5.0
krb5 (Red Hat package) - update to 1.21.1-1.el9
app-crypt/mit-krb5 - update to 1.21.2
krb5 - update to 1.21-3
krb5 - update to 1.21-3.fc38
OpenShift Service Mesh - addressed in versions 2.4.8, 2.5.2
Red Hat Advanced Cluster Management for Kubernetes - update to 2.10.5
Custom Metrics Autoscaler Operator for Red Hat OpenShift - update to 2.12.1-376
Storage Resource Manager - update to 4.10.0.3
Dell EMC Storage Monitoring and Reporting (SMR) - update to 4.10.0.3
Red Hat Ceph Storage - update to 6.1
Storage Ceph - update to 6.1z3
Red Hat Migration Toolkit for Applications - update to 6.2
Juniper Cloud Native Router - update to 23.4R1
Junos cRPD - update to 23.4R1
External References
Related Security Bulletins
- Denial of service in MIT Kerberos 5
- Fedora 38 update for krb5
- Red Hat Enterprise Linux 9 update for krb5
- Multiple vulnerabilities in Oracle Linux
- Multiple vulnerabilities in cert-manager Operator for Red Hat OpenShift 1.12
- Multiple vulnerabilities in cert-manager Operator for Red Hat OpenShift 1.11
- Multiple vulnerabilities in OpenShift Virtualization 4.13
- Multiple vulnerabilities in OpenShift Virtualization 4.14
- Multiple vulnerabilities in IBM Cloud Pak for Watson AIOps
- Multiple vulnerabilities in Red Hat Ceph Storage 6.1
- Multiple vulnerabilities in Logging Subsystem 5.8 for Red Hat OpenShift
- Multiple vulnerabilities in IBM Security Guardium
- Multiple vulnerabilities in MySQL Server
- Multiple vulnerabilities in MySQL Cluster
- Double free in IBM Storage Ceph
- Multiple vulnerabilities in Red Hat Network Observability
- Multiple vulnerabilities in Red Hat OpenShift for Windows Containers 10.15
- Multiple vulnerabilities in Red Hat Migration Toolkit for Applications
- Multiple vulnerabilities in Red Hat OpenShift for Windows Containers 9.0
- Multiple vulnerabilities in Red Hat OpenShift Builds
- Multiple vulnerabilities in Custom Metrics Autoscaler Operator for Red Hat OpenShift
- Multiple vulnerabilities in Juniper Cloud Native Router
- Multiple vulnerabilities in Juniper Networks Junos cRPD
- Multiple vulnerabilities in Dell Storage Resource Manager (SRM) and Dell Storage Monitoring and Reporting (SMR)
- Multiple vulnerabilities in OpenShift Service Mesh 2.5
- Multiple vulnerabilities in OpenShift Service Mesh 2.4
- Gentoo update for MIT krb5
- Multiple vulnerabilities in Red Hat Advanced Cluster Management for Kubernetes 2.10
- Amazon Linux AMI update for krb5