On Oct 13, 2008, at 12:23, Paul Moore wrote:
> Which bugs is this article referring to
>
> ------------------------------------------------------------
> http://news.zdnet.co.uk/security/0,1...9165276,00.htm
>
> Kerberos harbours critical flaws
>
> The network-authentication technology can leave computers running
> Unix, Linux
> or Mac OS X vulnerable



They mention double-free problems, and the article is from September
2004, so I expect it's referring to the flaw in advisory MITKRB5-
SA-2004-002 (listed at http://web.mit.edu/kerberos/advisories/) which
had come out a few days before.

Ken