Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-9gjg-834p-5gvv

Опубликовано: 24 июл. 2023
Источник: github
Github: Прошло ревью
CVSS3: 7.5

Описание

Duplicate Advisory: Keylime's registrar vulnerable to Denial-of-service attack via a single open connection

Duplicate Advisory

This advisory has been withdrawn because it is a duplicate of GHSA-pg75-v6fp-8q59. This link is maintained to preserve external references.

Original Description

A flaw was found in Keylime. Due to their blocking nature, the Keylime registrar is subject to a remote denial of service against its SSL connections. This flaw allows an attacker to exhaust all available connections.

Пакеты

Наименование

keylime

pip
Затронутые версииВерсия исправления

< 7.4.0

7.4.0

7.5 High

CVSS3

7.5 High

CVSS3