Snort.org home  
Got Source? About Snort About Sourcefire Snort FAQ
Sourcefire Network Security - the creators of Snort

Snort Forums Archive

Archive Home » Snort Advanced » Please HELP: "EXPLOIT kerberos principal name overflow UDP"

Please note that the categories listed below represent an archived version of our forums pages. To view the current version and be able to post and reply to threads, please register and login here to go to the full forums pages.

[ Notice: Full Version of This Topic ]

Please HELP: "EXPLOIT kerberos principal name overflow UDP"


Posted by steven on April 11, 2005 07:33:36

Gurus,

My snort caught a "EXPLOIT kerberos principal name overflow UDP" from a remote server to one of AD servers. What does this "EXPLOIT kerberos principal name overflow UDP" imply? Is it a threat and does Microsoft have a patch for this?

I browsed microsoft website and wasn't able to find anything about this.

Please help ... :(

Thanks in advance.

Steven