ZeroHour

CVE-2023-4320

CVSS 3.1
7.5 high
EPSS
<1%p49
Published
()
Modified
Description

An arithmetic overflow flaw was found in Satellite when creating a new personal access token. This flaw allows an attacker who uses this arithmetic overflow to create personal access tokens that are valid indefinitely, resulting in damage to the system's integrity.

Vendors
redhat
Products
satellite
Weakness
CWE-613
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N

In the news

No ingested article mentions this CVE yet.