Improper validation of the Apple certificate URL in the Apple Game Center authentication adapter allows attackers to bypass authentication, making the server vulnerable to DoS attacks. The vulnerability has been fixed by improving the URL validation and adding additional checks of the resource the URL points to before downloading it.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: GitHub_M
Published: 2022-05-04T01:10:08
Updated: 2024-08-03T04:29:00.957Z
Reserved: 2022-02-10T00:00:00
Link: CVE-2022-24901
Vulnrichment
No data.
NVD
Status : Modified
Published: 2022-05-04T01:15:49.127
Modified: 2024-11-21T06:51:21.370
Link: CVE-2022-24901
Redhat
No data.