Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2023-5255

Опубликовано: 03 окт. 2023
Источник: redhat
CVSS3: 7.5

Описание

For certificates that utilize the auto-renew feature in Puppet Server, a flaw exists which prevents the certificates from being revoked.

An improper resource release vulnerability was found in puppet. For certificates that utilize the auto-renew feature in Puppet Server, a flaw exists which prevents the certificates from being revoked.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Satellite 6puppetserverNot affected

Показывать по

Дополнительная информация

Статус:

Low
Дефект:
CWE-404
https://bugzilla.redhat.com/show_bug.cgi?id=2242146puppet: Denial of Service for Revocation of Auto Renewed Certificates

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 4.4
ubuntu
почти 3 года назад

For certificates that utilize the auto-renew feature in Puppet Server, a flaw exists which prevents the certificates from being revoked.

CVSS3: 4.4
nvd
почти 3 года назад

For certificates that utilize the auto-renew feature in Puppet Server, a flaw exists which prevents the certificates from being revoked.

CVSS3: 4.4
debian
почти 3 года назад

For certificates that utilize the auto-renew feature in Puppet Server, ...

CVSS3: 4.4
github
почти 3 года назад

For certificates that utilize the auto-renew feature in Puppet Server, a flaw exists which prevents the certificates from being revoked.

7.5 High

CVSS3