Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-9wgp-4vcq-75qr

Опубликовано: 11 июл. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 5.3

Описание

A race condition exists in the Tang server functionality for key generation and key rotation. This flaw results in a small time window where Tang private keys become readable by other processes on the same host.

A race condition exists in the Tang server functionality for key generation and key rotation. This flaw results in a small time window where Tang private keys become readable by other processes on the same host.

EPSS

Процентиль: 4%
0.00022
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-362

Связанные уязвимости

CVSS3: 5.3
ubuntu
около 2 лет назад

A race condition exists in the Tang server functionality for key generation and key rotation. This flaw results in a small time window where Tang private keys become readable by other processes on the same host.

CVSS3: 5.3
redhat
около 2 лет назад

A race condition exists in the Tang server functionality for key generation and key rotation. This flaw results in a small time window where Tang private keys become readable by other processes on the same host.

CVSS3: 5.3
nvd
около 2 лет назад

A race condition exists in the Tang server functionality for key generation and key rotation. This flaw results in a small time window where Tang private keys become readable by other processes on the same host.

CVSS3: 5.3
debian
около 2 лет назад

A race condition exists in the Tang server functionality for key gener ...

oracle-oval
почти 2 года назад

ELSA-2023-7022: tang security and bug fix update (MODERATE)

EPSS

Процентиль: 4%
0.00022
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-362