A flaw was found in Keylime. Due to their blocking nature, the Keylime registrar is subject to a remote denial of service against its SSL connections. This flaw allows an attacker to exhaust all available connections.
Advisories
Source ID Title
EUVD EUVD EUVD-2023-2332 A flaw was found in Keylime. Due to their blocking nature, the Keylime registrar is subject to a remote denial of service against its SSL connections. This flaw allows an attacker to exhaust all available connections.
Github GHSA Github GHSA GHSA-pg75-v6fp-8q59 Keylime's registrar vulnerable to Denial-of-service attack via a single open connection
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Sat, 23 Nov 2024 01:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Mon, 19 Aug 2024 13:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: redhat

Published:

Updated: 2025-08-30T21:32:28.497Z

Reserved: 2023-07-13T13:12:48.727Z

Link: CVE-2023-38200

cve-icon Vulnrichment

Updated: 2024-08-02T17:30:14.116Z

cve-icon NVD

Status : Modified

Published: 2023-07-24T16:15:12.067

Modified: 2024-11-21T08:13:04.287

Link: CVE-2023-38200

cve-icon Redhat

Severity : Moderate

Publid Date: 2023-07-12T00:00:00Z

Links: CVE-2023-38200 - Bugzilla

cve-icon OpenCVE Enrichment

No data.