Check: 2015-A-0278
windows 7 iavm:
2015-A-0278
(in version v1 r32)
Title
Microsoft Windows Kerberos Security Bypass Vulnerability (MS15-122) (Cat I impact)
Discussion
Microsoft has released a security bulletin addressing a vulnerability in Windows implementations of Kerberos. Kerberos is a protocol used to authenticate users and services on an unsecured network. To exploit this vulnerability, an attacker would connect a workstation to a malicious Kerberos Key Distribution Center (KDC). If successfully exploited, this vulnerability would allow an attacker to bypass Kerberos authentication on a target machine and decrypt drives protected by BitLocker.
Check Content
Fix Text
Additional Identifiers
Rule ID:
Vulnerability ID: V-62911
Group Title:
Expert Comments
Expert comments are only available to logged-in users.
CCIs
CCIs tied to check.
Number | Definition |
---|---|
No CCIs are assigned to this check |
Controls
Controls tied to check. These are derived from the CCIs shown above.
Number | Title |
---|---|
No controls are assigned to this check |