CVE-2003-0138
Severity CVSS v4.0: 
            Pending analysis
                                                    Type: 
          
                        Unavailable / Other
          
        Publication date: 
                          24/03/2003
                  Last modified: 
                          03/04/2025
                  Description
Version 4 of the Kerberos protocol (krb4), as used in Heimdal and other packages, allows an attacker to impersonate any principal in a realm via a chosen-plaintext attack.
              Impact
Base Score 2.0
          7.50
        Severity 2.0
          HIGH
        Vulnerable products and versions
| CPE | From | Up to | 
|---|---|---|
| cpe:2.3:a:mit:kerberos:4:*:*:*:*:*:*:* | 
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- http://marc.info/?l=bugtraq&m=104791775804776&w=2
 - http://web.mit.edu/kerberos/www/advisories/MITKRB5-SA-2003-004-krb4.txt
 - http://www.debian.org/security/2003/dsa-266
 - http://www.debian.org/security/2003/dsa-269
 - http://www.debian.org/security/2003/dsa-273
 - http://www.kb.cert.org/vuls/id/623217
 - http://www.redhat.com/support/errata/RHSA-2003-051.html
 - http://www.redhat.com/support/errata/RHSA-2003-052.html
 - http://www.redhat.com/support/errata/RHSA-2003-091.html
 - http://www.securityfocus.com/archive/1/316960/30/25250/threaded
 - http://www.securityfocus.com/bid/7113
 - https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A248
 - http://marc.info/?l=bugtraq&m=104791775804776&w=2
 - http://web.mit.edu/kerberos/www/advisories/MITKRB5-SA-2003-004-krb4.txt
 - http://www.debian.org/security/2003/dsa-266
 - http://www.debian.org/security/2003/dsa-269
 - http://www.debian.org/security/2003/dsa-273
 - http://www.kb.cert.org/vuls/id/623217
 - http://www.redhat.com/support/errata/RHSA-2003-051.html
 - http://www.redhat.com/support/errata/RHSA-2003-052.html
 - http://www.redhat.com/support/errata/RHSA-2003-091.html
 - http://www.securityfocus.com/archive/1/316960/30/25250/threaded
 - http://www.securityfocus.com/bid/7113
 - https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A248
 



