CVE-2024-6299

Lack of consideration of key expiry when validating signatures in Conduit, allowing an attacker which has compromised an expired key to forge requests as the remote server, as well as PDUs with timestamps past the expiry date
Configurations

No configuration.

History

No history.

Information

Published : 2024-06-25 13:15

Updated : 2024-06-25 18:50


NVD link : CVE-2024-6299

Mitre link : CVE-2024-6299

CVE.ORG link : CVE-2024-6299


JSON object : View

Products Affected

No product.

CWE
CWE-324

Use of a Key Past its Expiration Date