CVE-2024-11734 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

A denial of service vulnerability was found in Keycloak that could allow an administrative user with the right to change realm settings to disrupt the service.…
Medium CVSS: 6.5

CVE-2024-11734

A denial of service vulnerability was found in Keycloak that could allow an administrative user with the right to change realm settings to disrupt the service. This action is done by modifying any of the security headers and inserting newlines, which causes the Keycloak server to write to a request that has already been terminated, leading to the failure of said request.
Vendor
-
Product
-
CWE
CWE-693
Yayın Tarihi
2025-01-14 09:15:19
Güncelleme
2025-01-14 09:15:19
Source Identifier
secalert@redhat.com
KEV Date Added
-

Kategoriler

Referanslar