No analysis available yet.
Vendor Workaround
Mitigation for this issue is either not available or the currently available options don't meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base or stability.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-27262 | A flaw was found in osbuild-composer. A condition can be triggered that disables GPG verification for package repositories, which can expose the build phase to a Man-in-the-Middle attack, allowing untrusted code to be installed into an image being built. |
Wed, 06 Nov 2024 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2026-02-25T19:22:53.890Z
Reserved: 2024-03-07T21:19:24.246Z
Link: CVE-2024-2307
Updated: 2024-08-01T19:11:52.858Z
Status : Deferred
Published: 2024-03-19T17:15:12.520
Modified: 2026-04-15T00:35:42.020
Link: CVE-2024-2307
OpenCVE Enrichment
No data.
EUVD