PingID Windows Login prior to 2.8 is vulnerable to a denial of service condition on local machines when combined with using offline security keys as part of authentication.
The product does not release or incorrectly releases a resource before it is made available for re-use.
Link | Tags |
---|---|
https://www.pingidentity.com/en/resources/downloads/pingid.html | product vendor advisory |
https://docs.pingidentity.com/bundle/pingid/page/zhy1653552428545.html | release notes vendor advisory |