Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-ccc5-f7mc-225j

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Katello Installer before 0.0.18 uses world-readable permissions for /etc/pki/tls/private/katello-node.key when deploying a child Pulp node, which allows local users to obtain the private key by reading the file.

Katello Installer before 0.0.18 uses world-readable permissions for /etc/pki/tls/private/katello-node.key when deploying a child Pulp node, which allows local users to obtain the private key by reading the file.

EPSS

Процентиль: 13%
0.00043
Низкий

Связанные уязвимости

redhat
больше 12 лет назад

Katello Installer before 0.0.18 uses world-readable permissions for /etc/pki/tls/private/katello-node.key when deploying a child Pulp node, which allows local users to obtain the private key by reading the file.

nvd
больше 11 лет назад

Katello Installer before 0.0.18 uses world-readable permissions for /etc/pki/tls/private/katello-node.key when deploying a child Pulp node, which allows local users to obtain the private key by reading the file.

EPSS

Процентиль: 13%
0.00043
Низкий