Lucene search

K
ubuntucveUbuntu.comUB:CVE-2013-4134
HistoryNov 05, 2013 - 12:00 a.m.

CVE-2013-4134

2013-11-0500:00:00
ubuntu.com
ubuntu.com
14

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:M/Au:N/C:P/I:N/A:N

EPSS

0.002

Percentile

59.3%

OpenAFS before 1.4.15, 1.6.x before 1.6.5, and 1.7.x before 1.7.26 uses
weak encryption (DES) for Kerberos keys, which makes it easier for remote
attackers to obtain the service key.

Bugs

OSVersionArchitecturePackageVersionFilename
ubuntu10.04noarchopenafs< 1.4.12+dfsg-3+ubuntu0.3UNKNOWN
ubuntu12.04noarchopenafs< 1.6.1-1+ubuntu0.2UNKNOWN
ubuntu12.10noarchopenafs< 1.6.1-2+ubuntu2.1UNKNOWN
ubuntu13.04noarchopenafs< 1.6.2-1+ubuntu2.1UNKNOWN

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:M/Au:N/C:P/I:N/A:N

EPSS

0.002

Percentile

59.3%