Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2022-23948

Опубликовано: 21 сент. 2022
Источник: nvd
CVSS3: 7.5
EPSS Низкий

Описание

A flaw was found in Keylime before 6.3.0. The logic in the Keylime agent for checking for a secure mount can be fooled by previously created unprivileged mounts allowing secrets to be leaked to other processes on the host.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:keylime:keylime:*:*:*:*:*:*:*:*
Версия до 6.3.0 (исключая)

EPSS

Процентиль: 55%
0.00321
Низкий

7.5 High

CVSS3

Дефекты

CWE-200
NVD-CWE-noinfo

Связанные уязвимости

CVSS3: 7.5
ubuntu
больше 3 лет назад

A flaw was found in Keylime before 6.3.0. The logic in the Keylime agent for checking for a secure mount can be fooled by previously created unprivileged mounts allowing secrets to be leaked to other processes on the host.

EPSS

Процентиль: 55%
0.00321
Низкий

7.5 High

CVSS3

Дефекты

CWE-200
NVD-CWE-noinfo