Files
CVEs-PoC/2016/CVE-2016-4745.md
2025-09-29 21:09:30 +02:00

764 B

CVE-2016-4745

Description

The Kerberos 5 (aka krb5) PAM module in Apple OS X before 10.12 does not use constant-time operations for determining username validity, which makes it easier for remote attackers to enumerate user accounts via a timing side-channel attack.

POC

Reference

No PoCs from references.

Github