Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2021-20179

Опубликовано: 15 мар. 2021
Источник: debian

Описание

A flaw was found in pki-core. An attacker who has successfully compromised a key could use this flaw to renew the corresponding certificate over and over again, as long as it is not explicitly revoked. The highest threat from this vulnerability is to data confidentiality and integrity.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
dogtag-pkifixed10.10.2-2package

Примечания

  • https://github.com/dogtagpki/pki/pull/3475

Связанные уязвимости

CVSS3: 8.1
ubuntu
около 5 лет назад

A flaw was found in pki-core. An attacker who has successfully compromised a key could use this flaw to renew the corresponding certificate over and over again, as long as it is not explicitly revoked. The highest threat from this vulnerability is to data confidentiality and integrity.

CVSS3: 8.1
redhat
около 5 лет назад

A flaw was found in pki-core. An attacker who has successfully compromised a key could use this flaw to renew the corresponding certificate over and over again, as long as it is not explicitly revoked. The highest threat from this vulnerability is to data confidentiality and integrity.

CVSS3: 8.1
nvd
около 5 лет назад

A flaw was found in pki-core. An attacker who has successfully compromised a key could use this flaw to renew the corresponding certificate over and over again, as long as it is not explicitly revoked. The highest threat from this vulnerability is to data confidentiality and integrity.

rocky
около 5 лет назад

Important: pki-core:10.6 security update

CVSS3: 8.1
github
почти 4 года назад

A flaw was found in pki-core. An attacker who has successfully compromised a key could use this flaw to renew the corresponding certificate over and over again, as long as it is not explicitly revoked. The highest threat from this vulnerability is to data confidentiality and integrity.