Does MIT Kerberos flaw extend to MS Kerberos?

From: J Michael Workman (jworkman@mitre.org)
Date: 10/31/02


From: "J Michael Workman" <jworkman@mitre.org>
Date: Thu, 31 Oct 2002 08:38:10 -0800


I would like to get the word out to a few people that
sometimes listen to me about the MIT Kerberos 5 flaw
reported in the last few days.

It is my take that this should not affect Microsoft's
Kerberos 5 implementation since MSKerb5 is not
interoperable with non-MS Kerb 4.

Can someone confirm this?

The description of the security flaw can be found at
    http://www.cert.org/advisories/CA-2002-29.html

Thanks,

Mike Workman