CVE-2020-29663 Information
Jun 07, 2022
cve
Description
Icinga 2 v2.8.0 through v2.11.7 and v2.12.2 has an issue where revoked certificates due for renewal will automatically be renewed ignoring the CRL. This issue is fixed in Icinga 2 v2.11.8 and v2.12.3.
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
Reference
https://github.com/Icinga/icinga2/security/advisories/GHSA-pcmr-2p2f-r7j6 https://github.com/Icinga/icinga2/compare/v2.12.1…v2.12.2
Attack Complexity
LOW
Privileges Required
NONE
User Interaction Required
NONE
Scope
NONE
Confidentiality Impact
UNCHANGED
Integrity Impact
HIGH
Availability Impact
HIGH
Base Score
NONE
Base Severity
9.1
Share on: