System: unauthenticated user can request SCEP one-time PIN decryption
Published Nov 17, 2010
5.8
MEDIUMCVSS 2.0
EPSS 1.28%
Description
Red Hat Certificate System (RHCS) 7.3 and 8 and Dogtag Certificate System do not require authentication for requests to decrypt SCEP one-time PINs, which allows remote attackers to obtain PINs by sniffing the network for SCEP requests and then sending decryption requests to the Certificate Authority component.
Affected products
No data.
Configuration 1
- 7.3
- 8
Configuration 2
- n/a
No data.
Red Hat Certificate System 7.3
rhpki-ca-0:7.3.0-21.el4
Fixed · RHSA-2010:0837
Red Hat Certificate System 7.3
rhpki-common-0:7.3.0-41.el4
Fixed · RHSA-2010:0837
Red Hat Certificate System 7.3
rhpki-util-0:7.3.0-21.el4
Fixed · RHSA-2010:0837
Red Hat Certificate System 8
pki-ca-0:8.0.7-1.el5pki
Fixed · RHSA-2010:0838
Red Hat Certificate System 8
pki-common-0:8.0.6-2.el5pki
Fixed · RHSA-2010:0838
Red Hat Certificate System 8
pki-util-0:8.0.5-1.el5pki
Fixed · RHSA-2010:0838
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Certificate System 7.3 | rhpki-ca-0:7.3.0-21.el4 | Fixed | RHSA-2010:0837 |
| Red Hat Certificate System 7.3 | rhpki-common-0:7.3.0-41.el4 | Fixed | RHSA-2010:0837 |
| Red Hat Certificate System 7.3 | rhpki-util-0:7.3.0-21.el4 | Fixed | RHSA-2010:0837 |
| Red Hat Certificate System 8 | pki-ca-0:8.0.7-1.el5pki | Fixed | RHSA-2010:0838 |
| Red Hat Certificate System 8 | pki-common-0:8.0.6-2.el5pki | Fixed | RHSA-2010:0838 |
| Red Hat Certificate System 8 | pki-util-0:8.0.5-1.el5pki | Fixed | RHSA-2010:0838 |
No package ranges for this CVE.
Remediation
No remediation recorded yet.
References (11)
- http://secunia.com/advisories/42181 third-party-advisoryx_refsource_SECUNIAVendor Advisory
- http://securitytracker.com/id?1024697 vdb-entryx_refsource_SECTRACK
- http://www.osvdb.org/69149 vdb-entryx_refsource_OSVDB
- https://access.redhat.com/security/cve/CVE-2010-3868 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=648882 x_refsource_CONFIRMIssue Tracking
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2010-3846 Advisory
- https://fedorahosted.org/pki/changeset/1261 x_refsource_CONFIRMPatch
- https://nvd.nist.gov/vuln/detail/CVE-2010-3868
- https://rhn.redhat.com/errata/RHSA-2010-0837.html vendor-advisoryx_refsource_REDHAT
- https://rhn.redhat.com/errata/RHSA-2010-0838.html vendor-advisoryx_refsource_REDHAT
- https://www.cve.org/CVERecord?id=CVE-2010-3868
| Link | Providers | Tags |
|---|---|---|
| http://secunia.com/advisories/42181 | third-party-advisoryx_refsource_SECUNIAVendor Advisory | |
| http://securitytracker.com/id?1024697 | vdb-entryx_refsource_SECTRACK | |
| http://www.osvdb.org/69149 | vdb-entryx_refsource_OSVDB | |
| https://access.redhat.com/security/cve/CVE-2010-3868 | Vendor Advisory | |
| https://bugzilla.redhat.com/show_bug.cgi?id=648882 | x_refsource_CONFIRMIssue Tracking | |
| https://euvd.enisa.europa.eu/vulnerability/EUVD-2010-3846 | Advisory | |
| https://fedorahosted.org/pki/changeset/1261 | x_refsource_CONFIRMPatch | |
| https://nvd.nist.gov/vuln/detail/CVE-2010-3868 | ||
| https://rhn.redhat.com/errata/RHSA-2010-0837.html | vendor-advisoryx_refsource_REDHAT | |
| https://rhn.redhat.com/errata/RHSA-2010-0838.html | vendor-advisoryx_refsource_REDHAT | |
| https://www.cve.org/CVERecord?id=CVE-2010-3868 |
Change history (0)
No recorded changes yet.