Dogtag PKI is a designed enterprise software system manage enterprise Public Key Infrastructure deployments.
Security Fix(es):
Access to external entities when parsing XML documents can lead to XML external entity (XXE) attacks. This flaw allows a remote attacker to potentially retrieve the content of arbitrary files by sending specially crafted HTTP requests.(CVE-2022-2414)
{
"severity": "High"
}{
"aarch64": [
"pki-tools-10.7.3-4.oe1.aarch64.rpm",
"pki-symkey-10.7.3-4.oe1.aarch64.rpm",
"pki-tps-10.7.3-4.oe1.aarch64.rpm"
],
"src": [
"pki-core-10.7.3-4.oe1.src.rpm"
],
"noarch": [
"pki-help-10.7.3-4.oe1.noarch.rpm",
"pki-ocsp-10.7.3-4.oe1.noarch.rpm",
"pki-kra-10.7.3-4.oe1.noarch.rpm",
"pki-server-10.7.3-4.oe1.noarch.rpm",
"pki-base-java-10.7.3-4.oe1.noarch.rpm",
"pki-base-10.7.3-4.oe1.noarch.rpm",
"pki-tks-10.7.3-4.oe1.noarch.rpm",
"python3-pki-10.7.3-4.oe1.noarch.rpm",
"pki-ca-10.7.3-4.oe1.noarch.rpm"
],
"x86_64": [
"pki-tools-10.7.3-4.oe1.x86_64.rpm",
"pki-symkey-10.7.3-4.oe1.x86_64.rpm",
"pki-tps-10.7.3-4.oe1.x86_64.rpm"
]
}