Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2021-3908

Опубликовано: 11 нояб. 2021
Источник: ubuntu
Приоритет: medium
CVSS2: 5
CVSS3: 5.9

Описание

OctoRPKI does not limit the depth of a certificate chain, allowing for a CA to create children in an ad-hoc fashion, thereby making tree traversal never end.

РелизСтатусПримечание
devel

DNE

esm-apps/jammy

not-affected

1.4.2-1
hirsute

ignored

end of life
impish

ignored

end of life
jammy

not-affected

1.4.2-1
kinetic

ignored

end of life, was needs-triage
lunar

ignored

end of life, was needs-triage
mantic

ignored

end of life, was needs-triage
noble

DNE

trusty

ignored

end of standard support

Показывать по

5 Medium

CVSS2

5.9 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.9
nvd
около 4 лет назад

OctoRPKI does not limit the depth of a certificate chain, allowing for a CA to create children in an ad-hoc fashion, thereby making tree traversal never end.

CVSS3: 5.9
debian
около 4 лет назад

OctoRPKI does not limit the depth of a certificate chain, allowing for ...

CVSS3: 5.9
github
около 4 лет назад

Infinite certificate chain depth results in OctoRPKI running forever

5 Medium

CVSS2

5.9 Medium

CVSS3