CVE-2013-4134

Publication date 5 November 2013

Last updated 24 July 2024


Ubuntu priority

OpenAFS before 1.4.15, 1.6.x before 1.6.5, and 1.7.x before 1.7.26 uses weak encryption (DES) for Kerberos keys, which makes it easier for remote attackers to obtain the service key.

Status

No maintained releases are affected by this CVE.

Package Ubuntu Release Status
openafs 13.04 raring
Fixed 1.6.2-1+ubuntu2.1
12.10 quantal
Fixed 1.6.1-2+ubuntu2.1
12.04 LTS precise
Fixed 1.6.1-1+ubuntu0.2
10.04 LTS lucid
Fixed 1.4.12+dfsg-3+ubuntu0.3