Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2026-17039

Опубликовано: 24 июл. 2026
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS3: 3.1

Описание

A flaw was found in pki-core. The certificate authority (CA) renewal request path does not perform the realm-based authorization check that the enrollment path performs, allowing an authenticated user entitled to one realm to cause a certificate belonging to a different realm to be renewed without that realm's authorization.

РелизСтатусПримечание
devel

DNE

esm-apps-legacy/xenial

needs-triage

esm-apps/bionic

needs-triage

esm-apps/focal

needs-triage

esm-apps/jammy

needs-triage

jammy

needs-triage

noble

DNE

resolute

DNE

upstream

needs-triage

Показывать по

EPSS

Процентиль: 12%
0.00211
Низкий

3.1 Low

CVSS3

Связанные уязвимости

CVSS3: 3.1
redhat
25 дней назад

A flaw was found in pki-core. The certificate authority (CA) renewal request path does not perform the realm-based authorization check that the enrollment path performs, allowing an authenticated user entitled to one realm to cause a certificate belonging to a different realm to be renewed without that realm's authorization.

CVSS3: 3.1
nvd
24 дня назад

A flaw was found in pki-core. The certificate authority (CA) renewal request path does not perform the realm-based authorization check that the enrollment path performs, allowing an authenticated user entitled to one realm to cause a certificate belonging to a different realm to be renewed without that realm's authorization.

CVSS3: 3.1
debian
24 дня назад

A flaw was found in pki-core. The certificate authority (CA) renewal r ...

CVSS3: 3.1
github
24 дня назад

A flaw was found in pki-core. The certificate authority (CA) renewal request path does not perform the realm-based authorization check that the enrollment path performs, allowing an authenticated user entitled to one realm to cause a certificate belonging to a different realm to be renewed without that realm's authorization.

EPSS

Процентиль: 12%
0.00211
Низкий

3.1 Low

CVSS3