CVE-2023-36054 | MIT Kerberos 5 up to 1.20.1/1.21.0 kadmind lib/kadm5/kadm_rpc_xdr.c _xdr_kadm5_principal_ent_rec uninitialized pointer (EUVD-2023-40036)
A vulnerability was found in MIT Kerberos 5 up to 1.20.1/1.21.0. It has been declared as problematic. Affected is the function _xdr_kadm5_principal_ent_rec in the library lib/kadm5/kadm_rpc_xdr.c of the component kadmind. Such manipulation leads to uninitialized pointer.
This vulnerability is uniquely identified as CVE-2023-36054. The attack can be launched remotely. No exploit exists.
It is recommended to upgrade the affected component.