FreeIPA 4.4.0 allows remote attackers to request an arbitrary SAN name for services.
References
Link | Resource |
---|---|
https://bugzilla.redhat.com/show_bug.cgi?id=1360757 | Issue Tracking Patch |
https://bugzilla.redhat.com/attachment.cgi?id=1184610 | Issue Tracking |
Configurations
Information
Published : 2017-06-27 13:29
Updated : 2017-07-05 08:32
NVD link : CVE-2016-5414
Mitre link : CVE-2016-5414
JSON object : View
CWE
CWE-284
Improper Access Control
Products Affected
freeipa
- freeipa