info
discussion
exploit
solution
references
Todd Miller Sudo Kerberos Authentication Local Authentication Bypass Weakness
References:
CVS log for sudo/auth/kerb5.c
(Todd Miller)
Re: Sudo: local root compromise with krb5 enabled
(Thor Lancelot Simon
)
Sudo Homepage
(Todd Miller)
Re: Sudo: local root compromise with krb5 enabled
(Ken Raeburn)
MIT krb5: makes sudo authentication issue MUCH worse.
(Thor Lancelot Simon
)
Re: Sudo: local root compromise with krb5 enabled
(James Downs
)
Re: Sudo: local root compromise with krb5 enabled
("Todd C. Miller"
)
Sudo: local root compromise with krb5 enabled
(Thor Lancelot Simon
)
Re: Sudo: local root compromise with krb5 enabled
("Mark Senior"
)
Privacy Statement
Copyright 2010, SecurityFocus