CVE-2019-3467 vulnerability in Debian and Other Products
Published on December 23, 2019
Debian-edu-config all versions < 2.11.10, a set of configuration files used for Debian Edu, and debian-lan-config < 0.26, configured too permissive ACLs for the Kerberos admin server, which allowed password changes for other Kerberos user principals.
Products Associated with CVE-2019-3467
You can be notified by email with stack.watch whenever vulnerabilities like CVE-2019-3467 are published in these products:
Affected Versions
Debian Edu Version all versions < 2.11.10 is affected by CVE-2019-3467Exploit Probability
EPSS
0.09%
Percentile
24.47%
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.