A flaw exists in tang, a network-based cryptographic binding server, which could result in leak of private keys.
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.
Link | Tags |
---|---|
https://bugzilla.redhat.com/show_bug.cgi?id=2029814 | third party advisory issue tracking |
https://github.com/latchset/tang/pull/81 | patch third party advisory issue tracking |
https://github.com/latchset/tang/commit/e82459fda10f0630c3414ed2afbc6320bb9ea7c9 | third party advisory patch |