ZeroHour

CVE-2024-6156

PoC
CVSS 3.1
3.8 low
EPSS
<1%p5
Published
()
Modified
Description

Mark Laing discovered that LXD's PKI mode, until version 5.21.2, could be bypassed if the client's certificate was present in the trust store.

Vendors
canonical
Products
lxd
Weakness
CWE-295
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:L/I:N/A:N

In the news

No ingested article mentions this CVE yet.