CVE-2013-4455
Katello Installer before 0.0.18 uses world-readable permissions for /etc/pki/tls/private/katello-node.key when deploying
Katello Installer before 0.0.18 uses world-readable permissions for /etc/pki/tls/private/katello-node.key when deploying a child Pulp node, which allows local users to obtain the private key by reading the file.
LOW · CVSS 2.1
EPSS 0.00043
Schedule remediation
- Public exploit or PoC is available
Sigma rules0
YARA rules0