CVE-2021-3551

Description

A flaw was found in the PKI-server, where the spkispawn command, when run in debug mode, stores admin credentials in the installation log file. This flaw allows a local attacker to retrieve the file to obtain the admin password and gain admin privileges to the Dogtag CA manager. The highest threat from this vulnerability is to confidentiality.

Risk Information

Base Score
7.8
MODERATE
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
0.018

Associated Vulnerability

VulnerabilityOS Platform
(RHSA-2021:2235) pki-core:10.6 security update pki-acme-10.10.5-3.module+el8.4.0+11039+635979e4.noarch.rpmLinux
(RHSA-2021:2235) pki-core:10.6 security update pki-base-10.10.5-3.module+el8.4.0+11039+635979e4.noarch.rpmLinux
(RHSA-2021:2235) pki-core:10.6 security update pki-base-java-10.10.5-3.module+el8.4.0+11039+635979e4.noarch.rpmLinux
(RHSA-2021:2235) pki-core:10.6 security update pki-ca-10.10.5-3.module+el8.4.0+11039+635979e4.noarch.rpmLinux
(RHSA-2021:2235) pki-core:10.6 security update pki-core-debugsource-10.10.5-3.module+el8.4.0+11039+635979e4.x86_64.rpmLinux
(RHSA-2021:2235) pki-core:10.6 security update pki-kra-10.10.5-3.module+el8.4.0+11039+635979e4.noarch.rpmLinux
(RHSA-2021:2235) pki-core:10.6 security update pki-server-10.10.5-3.module+el8.4.0+11039+635979e4.noarch.rpmLinux
(RHSA-2021:2235) pki-core:10.6 security update pki-symkey-10.10.5-3.module+el8.4.0+11039+635979e4.x86_64.rpmLinux
(RHSA-2021:2235) pki-core:10.6 security update pki-tools-10.10.5-3.module+el8.4.0+11039+635979e4.x86_64.rpmLinux
(RHSA-2021:2235) pki-core:10.6 security update python3-pki-10.10.5-3.module+el8.4.0+11039+635979e4.noarch.rpmLinux
Jss update (ELSA-2021-2235) jss-4.8.1-2.module+el8.4.0+20154+9830f79e.x86_64.rpmLinux
Jss-javadoc update (ELSA-2021-2235) jss-javadoc-4.8.1-2.module+el8.4.0+20154+9830f79e.x86_64.rpmLinux
Ldapjdk update (ELSA-2021-2235) ldapjdk-4.22.0-1.module+el8.3.0+7857+983338ee.noarch.rpmLinux
Ldapjdk-javadoc update (ELSA-2021-2235) ldapjdk-javadoc-4.22.0-1.module+el8.3.0+7857+983338ee.noarch.rpmLinux
Pki-acme update (ELSA-2021-2235) pki-acme-10.10.5-3.0.1.module+el8.4.0+20181+8592f730.noarch.rpmLinux
Pki-base update (ELSA-2021-2235) pki-base-10.10.5-3.0.1.module+el8.4.0+20181+8592f730.noarch.rpmLinux
Pki-base-java update (ELSA-2021-2235) pki-base-java-10.10.5-3.0.1.module+el8.4.0+20181+8592f730.noarch.rpmLinux
Pki-ca update (ELSA-2021-2235) pki-ca-10.10.5-3.0.1.module+el8.4.0+20181+8592f730.noarch.rpmLinux
Pki-kra update (ELSA-2021-2235) pki-kra-10.10.5-3.0.1.module+el8.4.0+20181+8592f730.noarch.rpmLinux
Pki-server update (ELSA-2021-2235) pki-server-10.10.5-3.0.1.module+el8.4.0+20181+8592f730.noarch.rpmLinux
Pki-symkey update (ELSA-2021-2235) pki-symkey-10.10.5-3.0.1.module+el8.4.0+20181+8592f730.x86_64.rpmLinux
Pki-tools update (ELSA-2021-2235) pki-tools-10.10.5-3.0.1.module+el8.4.0+20181+8592f730.x86_64.rpmLinux
Python3-pki update (ELSA-2021-2235) python3-pki-10.10.5-3.0.1.module+el8.4.0+20181+8592f730.noarch.rpmLinux
Tomcatjss update (ELSA-2021-2235) tomcatjss-7.6.1-1.module+el8.4.0+20053+7cddd5b6.noarch.rpmLinux

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234