CVE-2018-5729 - log back

CVE-2018-5729 created at 25 Sep 2019 19:31:40
Severity
+ Medium
Remote
+ Remote
Type
+ Insufficient validation
Description
+ A flaw was found in MIT krb5 1.6 or later, an authenticated kadmin user with permission to add principals to an LDAP Kerberos database can cause a null dereference in kadmind, or circumvent a DN container check, by supplying tagged data intended to be internal to the database module.
References
+ https://github.com/krb5/krb5/commit/e1caf6fb74981da62039846931ebdffed71309d1
Notes
+ Fixed in 1.16.1