Language:
https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=891869
https://security-tracker.debian.org/tracker/source-package/krb5
https://www.debian.org/lts/security/2021/dla-2771
https://security-tracker.debian.org/tracker/CVE-2018-20217
https://security-tracker.debian.org/tracker/CVE-2018-5729
https://security-tracker.debian.org/tracker/CVE-2018-5730
Severity: Medium
ID: 153808
File Name: debian_DLA-2771.nasl
Version: 1.3
Type: local
Agent: unix
Family: Debian Local Security Checks
Published: 10/1/2021
Updated: 7/19/2022
Supported Sensors: Agentless Assessment, Continuous Assessment, Frictionless Assessment Agent, Nessus Agent, Nessus
Risk Factor: Low
Score: 3.6
Risk Factor: Medium
Base Score: 6.5
Temporal Score: 4.8
Vector: CVSS2#AV:N/AC:L/Au:S/C:P/I:P/A:P
CVSS Score Source: CVE-2018-5729
Risk Factor: Medium
Base Score: 4.7
Temporal Score: 4.1
Vector: CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:L
Temporal Vector: CVSS:3.0/E:U/RL:O/RC:C
CPE: p-cpe:/a:debian:debian_linux:krb5-pkinit, p-cpe:/a:debian:debian_linux:libkrb5support0, cpe:/o:debian:debian_linux:9.0, p-cpe:/a:debian:debian_linux:krb5-gss-samples, p-cpe:/a:debian:debian_linux:libkrad0, p-cpe:/a:debian:debian_linux:libkdb5-8, p-cpe:/a:debian:debian_linux:libkrad-dev, p-cpe:/a:debian:debian_linux:libkadm5clnt-mit11, p-cpe:/a:debian:debian_linux:krb5-kdc, p-cpe:/a:debian:debian_linux:krb5-otp, p-cpe:/a:debian:debian_linux:krb5-admin-server, p-cpe:/a:debian:debian_linux:libgssapi-krb5-2, p-cpe:/a:debian:debian_linux:libkrb5-dev, p-cpe:/a:debian:debian_linux:libkadm5srv-mit11, p-cpe:/a:debian:debian_linux:krb5-multidev, p-cpe:/a:debian:debian_linux:libgssrpc4, p-cpe:/a:debian:debian_linux:libk5crypto3, p-cpe:/a:debian:debian_linux:libkrb5-dbg, p-cpe:/a:debian:debian_linux:krb5-locales, p-cpe:/a:debian:debian_linux:krb5-user, p-cpe:/a:debian:debian_linux:libkrb5-3, p-cpe:/a:debian:debian_linux:krb5-kpropd, p-cpe:/a:debian:debian_linux:krb5-doc, p-cpe:/a:debian:debian_linux:krb5-k5tls, p-cpe:/a:debian:debian_linux:krb5-kdc-ldap
Required KB Items: Host/local_checks_enabled, Host/Debian/release, Host/Debian/dpkg-l
Exploit Ease: No known exploits are available
Patch Publication Date: 9/30/2021
Vulnerability Publication Date: 2/13/2018
CVE: CVE-2018-20217, CVE-2018-5729, CVE-2018-5730, CVE-2021-37750
IAVB: 2021-B-0054-S