Логотип exploitDog
bind:CVE-2021-20319
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2021-20319

Количество 3

Количество 3

redhat логотип

CVE-2021-20319

больше 4 лет назад

An improper signature verification vulnerability was found in coreos-installer. A specially crafted gzip installation image can bypass the image signature verification and as a consequence can lead to the installation of unsigned content. An attacker able to modify the original installation image can write arbitrary data, and achieve full access to the node being installed.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2021-20319

почти 4 года назад

An improper signature verification vulnerability was found in coreos-installer. A specially crafted gzip installation image can bypass the image signature verification and as a consequence can lead to the installation of unsigned content. An attacker able to modify the original installation image can write arbitrary data, and achieve full access to the node being installed.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-3r3g-g73x-g593

больше 4 лет назад

coreos-installer improperly verifies GPG signature when decompressing gzipped artifact

CVSS3: 7.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
redhat логотип
CVE-2021-20319

An improper signature verification vulnerability was found in coreos-installer. A specially crafted gzip installation image can bypass the image signature verification and as a consequence can lead to the installation of unsigned content. An attacker able to modify the original installation image can write arbitrary data, and achieve full access to the node being installed.

CVSS3: 7.5
0%
Низкий
больше 4 лет назад
nvd логотип
CVE-2021-20319

An improper signature verification vulnerability was found in coreos-installer. A specially crafted gzip installation image can bypass the image signature verification and as a consequence can lead to the installation of unsigned content. An attacker able to modify the original installation image can write arbitrary data, and achieve full access to the node being installed.

CVSS3: 7.8
0%
Низкий
почти 4 года назад
github логотип
GHSA-3r3g-g73x-g593

coreos-installer improperly verifies GPG signature when decompressing gzipped artifact

CVSS3: 7.8
0%
Низкий
больше 4 лет назад

Уязвимостей на страницу