Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Red Hat Certificate System rhpki-common Security Bypass Weakness

Red Hat Certificate System (RHCS) is prone to a security-bypass weakness because of a flaw in 'rhpki-common' (Red Hat PKI Common Framework) when handling certificate signing requests (CSR). Attackers can leverage this flaw to bypass security policies.

Successful exploits will aid in man-in-the-middle attacks against users that trust RHCS-managed Certificate Authorities.







 

Privacy Statement
Copyright 2008, SecurityFocus