Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Katello Subscribe
Filtered by product Katello-configure
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2012-6116 1 Katello 2 Katello, Katello-configure 2013-04-03 2.1 LOW N/A
modules/certs/manifests/config.pp in katello-configure before 1.3.3.pulpv2 in Katello uses weak permissions (666) for the Candlepin bootstrap RPM, which allows local users to modify the Candlepin CA certificate by writing to this file.