Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

msrc логотип

CVE-2026-3336

Опубликовано: 06 мар. 2026
Источник: msrc
CVSS3: 7.5
EPSS Низкий

Описание

PKCS7_verify Certificate Chain Validation Bypass in AWS-LC

EPSS

Процентиль: 1%
0.0001
Низкий

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 7.5
redhat
24 дня назад

Improper certificate validation in PKCS7_verify() in AWS-LC allows an unauthenticated user to bypass certificate chain verification when processing PKCS7 objects with multiple signers, except the final signer. Customers of AWS services do not need to take action. Applications using AWS-LC should upgrade to AWS-LC version 1.69.0.

CVSS3: 7.5
nvd
24 дня назад

Improper certificate validation in PKCS7_verify() in AWS-LC allows an unauthenticated user to bypass certificate chain verification when processing PKCS7 objects with multiple signers, except the final signer. Customers of AWS services do not need to take action. Applications using AWS-LC should upgrade to AWS-LC version 1.69.0.

EPSS

Процентиль: 1%
0.0001
Низкий

7.5 High

CVSS3