Incomplete cleanup when performing redactions in Conduit, allowing an attacker to check whether certain strings were present in the PDU before redaction
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-47417 | Incomplete cleanup when performing redactions in Conduit, allowing an attacker to check whether certain strings were present in the PDU before redaction |
Fixes
Solution
Upgrade to version 0.8.0
Workaround
No workaround given by the vendor.
References
History
Fri, 20 Sep 2024 19:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Conduit
Conduit conduit |
|
| CPEs | cpe:2.3:a:conduit:conduit:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Conduit
Conduit conduit |
Status: PUBLISHED
Assigner: GitLab
Published:
Updated: 2024-08-29T15:04:59.860Z
Reserved: 2024-06-25T10:30:40.683Z
Link: CVE-2024-6300
Updated: 2024-08-01T21:33:05.334Z
Status : Modified
Published: 2024-06-25T13:15:50.847
Modified: 2024-11-21T09:49:23.437
Link: CVE-2024-6300
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD