CVE-1999-0143

CVSS 2.0 Score 4.6 of 10 (medium)

Details

Published Feb 21, 1996
Updated: Nov 20, 2024

Summary

CVE-1999-0143 is a vulnerability affecting Kerberos 4 key servers. This issue allows an unauthorized user to masquerade as another user by breaking and generating session keys. Attackers can exploit this vulnerability to gain unauthorized access to systems and services protected by the affected key servers. The impact of this vulnerability is significant as it undermines the security of authentication processes relying on Kerberos 4. To mitigate this risk, it is recommended to upgrade to a more secure version of Kerberos or implement other protective measures, such as disabling the use of desirable names in the realm.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • MIT Kerberos
  • SunOS

Affected Vendors

  • Oracle Corp
  • Massachusetts Institute of Technology