An input validation error was found in Red Hat Certificate System's handling of client provided certificates before 8.1.20-1. If the certreq field is not present in a certificate an assertion error is triggered causing a denial of service.
2018-07-26T16:29:00.373
2024-11-21T03:32:02.627
Modified
CVSSv3.0: 3.5 (LOW)
AV:N/AC:L/Au:S/C:N/I:N/A:P
8.0
2.9
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | redhat | certificate_system | < 8.1.20-1 | Yes |