Описание
Improper synchronization of the userTokens map in the API server in Canonical Juju 4.0.5, 3.6.20, and 2.9.56 may allow an authenticated user to possibly cause a denial of service on the server or possibly reuse a single-use discharge token.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | DNE | |
| jammy | DNE | |
| noble | DNE | |
| questing | DNE | |
| resolute | DNE | |
| snap | needs-triage | |
| upstream | needs-triage |
Показывать по
10
EPSS
Процентиль: 16%
0.00243
Низкий
6.4 Medium
CVSS3
Связанные уязвимости
CVSS3: 6.4
nvd
4 месяца назад
Improper synchronization of the userTokens map in the API server in Canonical Juju 4.0.5, 3.6.20, and 2.9.56 may allow an authenticated user to possibly cause a denial of service on the server or possibly reuse a single-use discharge token.
CVSS3: 6.4
debian
4 месяца назад
Improper synchronization of the userTokens map in the API server in Ca ...
CVSS3: 6.4
github
4 месяца назад
Juju: In-Memory Token Store for Discharge Tokens Lacks Concurrency Safety and Persistence
EPSS
Процентиль: 16%
0.00243
Низкий
6.4 Medium
CVSS3