Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-38200


A flaw was found in Keylime. Due to their blocking nature, the Keylime registrar is subject to a remote denial of service against its SSL connections. This flaw allows an attacker to exhaust all available connections.


Published

2023-07-24T16:15:12.067

Last Modified

2024-11-21T08:13:04.287

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 7.5 (HIGH)

Weaknesses
  • Type: Secondary
    CWE-400
  • Type: Primary
    CWE-834

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application keylime keylime - Yes
Operating System redhat enterprise_linux 9.0 Yes
Operating System redhat enterprise_linux_eus 9.2 Yes
Operating System redhat enterprise_linux_for_ibm_z_systems 9.0_s390x Yes
Operating System redhat enterprise_linux_for_ibm_z_systems_eus 9.2_s390x Yes
Operating System redhat enterprise_linux_for_power_little_endian 9.0_ppc64le Yes
Operating System redhat enterprise_linux_for_power_little_endian_eus 9.0_ppc64le Yes
Operating System redhat enterprise_linux_server_aus 9.2 Yes
Operating System fedoraproject fedora 38 Yes

References