Release date: 2012-12-06 update date: 2012-12-08 affected system: RedHatCertificateSystem8RedHatCertificateSystem Description: describugtraqid: 56843CVE
Release date: 2012-6 6
Updated on: 2012-12-08
Affected Systems:
RedHat Certificate System 8
RedHat Certificate System
Description:
--------------------------------------------------------------------------------
Bugtraq id: 56843
CVE (CAN) ID: CVE-2012-4556
Red Hat Certificate System is a software System that manages enterprise-level PKI deployment.
Red Hat Certificate System (RHCS)'s token processing System has a denial of service vulnerability when processing user Certificate queries with blank search fields. Remote attackers can exploit this vulnerability to reset connections, this causes a denial of service.
<* Source: Red Hat
Link: https://access.redhat.com/security/cve/CVE-2012-4556
Https://bugzilla.redhat.com/show_bug.cgi? CVE-2012-4556
Https://www.redhat.com/support/errata/RHSA-2012-1550.html
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
RedHat
------
For this reason, RedHat has released a Security Bulletin (RHSA-2012: 1550-01) and patch:
RHSA-2012: 1550-01: Moderate: pki security update
Link: https://www.redhat.com/support/errata/RHSA-2012-1550.html