Advertisement
Promo

Security threats Toolkit

Kerberos allows attackers into corporate networks

Matthew Broersma ZDNet.co.uk

Published: 24 Oct 2002 15:43 BST

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

Kerberos has lost some of its bite, according to the US government, which on Wednesday warned of a critical flaw that could allow hackers to circumvent the secure networking system.

Kerberos was invented by MIT and is used by many large businesses as a way of keeping their networks secure. It uses strong encryption to verify the identity of any machine using a networked resource.

On Wednesday the Computer Incident Advisory Capability (CIAC) of the US government Department of Energy issued the warning, which originated at MIT. The flaw allows an attacker to gain unauthorised access to the key distribution centre (KDC), which authenticates users, effectively compromising the security of the entire network.

The problem lies with software in MIT Kerberos 5 called kadmind4 (Kerberos v4 compatibility administration daemon), which allows compatibility with older administrative clients. A buffer stack overflow allows an attacker to use a specially-formed request to gain access to the KDC with the privileges of a user running kadmind4. Since this is typically the "root" or highest-level user, the attacker would be able to run any code or make any changes to the KDC.

All releases of MIT Kerberos 5 are affected, including version 5-1.2.6. All Kerberos 4 implementations derived from MIT Kerberos 4 are also vulnerable, MIT said.

The CIAC's bulletin, with links to a patch, is available here.

MIT credited Johan Danielsson and Love Hornquist-Astrand for discovering the problem and providing the initial patch.


For all security-related news, including updates on the latest viruses, hacking exploits and patches, check out ZDNet UK's Security News Section.

Have your say instantly, and see what others have said. Go to the Security forum.

Let the editors know what you think in the Mailroom.

  • Email
  • Trackback
  • Clip Link
  • Print friendlyPrint with EPSON

Did you find this article useful?
41 out of 94 people found this useful


Full Talkback thread

0 comments

Company/Topic Alerts

Create a new alert from the list below:








Video icon

Video

Sentry Posts Blog

Civil liberties groups attack file-sha...

Civil liberties and digital rights organisations have strongly criticised Lord Mandelson's Digital Economy Bill. Liberty said in a position paper on Tuesday that the bill, part of... More

Post a comment

Authentication risks all too human

Risks to successful online banking identification and authentication using smartcards involve a mixture of human and technological factors, according to the European Network and Information... More

1 comment

Opera censors Chinese content

Opera has updated the Chinese version of its mobile browser to stop users accessing restricted content. Opera Mini was updated on Friday from an international to a Chinese version,... More

2 comments


Skip Sub Navigation Links to CNET Brand Links

Help

Become part of the ZDNet community.

Newsletters