Описание
Duplicate Advisory: Keylime's registrar vulnerable to Denial-of-service attack via a single open connection
Duplicate Advisory
This advisory has been withdrawn because it is a duplicate of GHSA-pg75-v6fp-8q59. This link is maintained to preserve external references.
Original Description
A flaw was found in Keylime. Due to their blocking nature, the Keylime registrar is subject to a remote denial of service against its SSL connections. This flaw allows an attacker to exhaust all available connections.
Пакеты
Наименование
keylime
pip
Затронутые версииВерсия исправления
< 7.4.0
7.4.0
7.5 High
CVSS3
7.5 High
CVSS3