CVE-2017-9270

Severity CVSS v4.0:
Pending analysis
Type:
CWE-20 Input Validation
Publication date:
01/03/2018
Last modified:
07/11/2023

Description

In cryptctl before version 2.0 a malicious server could send RPC requests that could overwrite files outside of the cryptctl key database.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:opensuse:cryptctl:2.0:*:*:*:*:*:*:*