Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 3

Количество 3

redhat логотип

CVE-2021-20319

почти 5 лет назад

An improper signature verification vulnerability was found in coreos-installer. A specially crafted gzip installation image can bypass the image signature verification and as a consequence can lead to the installation of unsigned content. An attacker able to modify the original installation image can write arbitrary data, and achieve full access to the node being installed.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2021-20319

больше 4 лет назад

An improper signature verification vulnerability was found in coreos-installer. A specially crafted gzip installation image can bypass the image signature verification and as a consequence can lead to the installation of unsigned content. An attacker able to modify the original installation image can write arbitrary data, and achieve full access to the node being installed.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-3r3g-g73x-g593

почти 5 лет назад

coreos-installer improperly verifies GPG signature when decompressing gzipped artifact

CVSS3: 7.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
redhat логотип
CVE-2021-20319

An improper signature verification vulnerability was found in coreos-installer. A specially crafted gzip installation image can bypass the image signature verification and as a consequence can lead to the installation of unsigned content. An attacker able to modify the original installation image can write arbitrary data, and achieve full access to the node being installed.

CVSS3: 7.5
1%
Низкий
почти 5 лет назад
nvd логотип
CVE-2021-20319

An improper signature verification vulnerability was found in coreos-installer. A specially crafted gzip installation image can bypass the image signature verification and as a consequence can lead to the installation of unsigned content. An attacker able to modify the original installation image can write arbitrary data, and achieve full access to the node being installed.

CVSS3: 7.8
1%
Низкий
больше 4 лет назад
github логотип
GHSA-3r3g-g73x-g593

coreos-installer improperly verifies GPG signature when decompressing gzipped artifact

CVSS3: 7.8
1%
Низкий
почти 5 лет назад

Уязвимостей на страницу