CVE-2015-5464

Severity CVSS v4.0:
Pending analysis
Type:
CWE-284 Improper Access Control
Publication date:
22/07/2015
Last modified:
12/04/2025

Description

The Gemalto SafeNet Luna HSM allows remote authenticated users to bypass intended key-export restrictions by leveraging (1) crypto-user or (2) crypto-officer access to an HSM partition.

Vulnerable products and versions

CPE From Up to
cpe:2.3:h:gemalto:safenet_luna_g5:*:*:*:*:*:*:*:*
cpe:2.3:h:gemalto:safenet_luna_pci-e:*:*:*:*:*:*:*:*
cpe:2.3:h:gemalto:safenet_luna_sa:*:*:*:*:*:*:*:*