Security
Headlines
HeadlinesLatestCVEs

Headline

CVE-2023-5255: CVE-2023-5255 Denial of Service for Revocation of Auto Renewed Certificates

For certificates that utilize the auto-renew feature in Puppet Server, a flaw exists which prevents the certificates from being revoked.

CVE
#dos

**CVSS 3 Base Score:

4.4

****Posted On:

October 3, 2023

****Assessed Risk Level:

Medium

**

For certificates that utilize the auto-renew feature in Puppet Server, a flaw exists which prevents the certificates from being revoked.

Status:

Affected software versions:

  • Puppet Enterprise 2023.3
  • Puppet Server 8.2.0 and 8.2.1

Resolved in:

  • Puppet Enterprise 2023.4
  • Puppet Server 8.2.3

← Back to CVE Listings

Related news

CVE-2023-5255

For certificates that utilize the auto-renew feature in Puppet Server, a flaw exists which prevents the certificates from being revoked.

CVE: Latest News

CVE-2023-50976: Transactions API Authorization by oleiman · Pull Request #14969 · redpanda-data/redpanda