The vantage6 technology enables to manage and deploy privacy enhancing technologies like Federated Learning (FL) and Multi-Party Computation (MPC). It is possible to find out usernames from the response time of login requests. This could aid attackers in credential attacks. Version 4.2.0 patches this vulnerability.
Metrics
Affected Vendors & Products
References
History
Thu, 17 Oct 2024 18:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
MITRE
Status: PUBLISHED
Assigner: GitHub_M
Published: 2024-01-30T15:43:06.789Z
Updated: 2024-10-17T18:01:07.740Z
Reserved: 2023-12-29T16:10:20.368Z
Link: CVE-2024-21671
Vulnrichment
Updated: 2024-08-01T22:27:36.036Z
NVD
Status : Modified
Published: 2024-01-30T16:15:48.090
Modified: 2024-11-21T08:54:50.357
Link: CVE-2024-21671
Redhat
No data.