A flaw was found in Booth, a cluster ticket manager. If a specially-crafted hash is passed to gcry_md_get_algo_dlen(), it may allow an invalid HMAC to be accepted by the Booth server.
Metrics
Affected Vendors & Products
References
History
Fri, 22 Nov 2024 12:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
References |
|
Tue, 24 Sep 2024 19:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
References |
|
|
Metrics |
ssvc
|
MITRE
Status: PUBLISHED
Assigner: redhat
Published: 2024-06-06T05:30:04.137Z
Updated: 2024-11-15T17:52:56.132Z
Reserved: 2024-03-28T17:17:50.507Z
Link: CVE-2024-3049
Vulnrichment
Updated: 2024-09-24T18:03:12.532Z
NVD
Status : Modified
Published: 2024-06-06T06:15:09.550
Modified: 2024-11-21T09:28:45.870
Link: CVE-2024-3049
Redhat