|
|
Log in / Subscribe / Register

foreman-proxy: restriction bypass

Package(s):foreman-proxy CVE #(s):CVE-2014-3691
Created:March 4, 2015 Updated:March 4, 2015
Description: From the Red Hat advisory:

It was discovered that foreman-proxy, when running in SSL-secured mode, did not correctly verify SSL client certificates. This could permit any client with access to the API to make requests and perform actions otherwise restricted.

Alerts:
Red Hat RHSA-2015:0288-01 foreman-proxy 2015-03-03
Red Hat RHSA-2015:0287-01 foreman-proxy 2015-03-03

to post comments


Copyright © 2026, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds