Redhat

Update Infrastructure

4 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.71%
  • Published 05.02.2024 21:15:11
  • Last modified 21.11.2024 08:37:18

A flaw was found in the python-cryptography package. This issue may allow a remote attacker to decrypt captured messages in TLS servers that use RSA key exchanges, which may lead to exposure of confidential or sensitive data.

  • EPSS 0.31%
  • Published 05.02.2024 21:15:10
  • Last modified 21.11.2024 08:37:18

A flaw was found in m2crypto. This issue may allow a remote attacker to decrypt captured messages in TLS servers that use RSA key exchanges, which may lead to exposure of confidential or sensitive data.

Exploit
  • EPSS 0.03%
  • Published 25.10.2022 18:15:10
  • Last modified 07.05.2025 20:15:21

The collection remote for pulp_ansible stores tokens in plaintext instead of using pulp's encrypted field and exposes them in read/write mode via the API () instead of marking it as write only.

Exploit
  • EPSS 0.08%
  • Published 04.11.2019 13:15:10
  • Last modified 21.11.2024 01:55:43

RHUI (Red Hat Update Infrastructure) 2.1.3 has world readable PKI entitlement certificates