CVE-2013-0199
Publication date 29 May 2014
Last updated 24 July 2024
Ubuntu priority
The default LDAP ACIs in FreeIPA 3.0 before 3.1.2 do not restrict access to the (1) ipaNTTrustAuthIncoming and (2) ipaNTTrustAuthOutgoing attributes, which allow remote attackers to obtain the Cross-Realm Kerberos Trust key via unspecified vectors.
Status
Package | Ubuntu Release | Status |
---|---|---|
freeipa | 14.04 LTS trusty |
Not affected
|