Improper Resource Shutdown or Release
CVE-2022-23717
Summary
PingID Windows Login prior to 2.8 is vulnerable to a denial of service condition on local machines when combined with using offline security keys as part of authentication.
- HIGH
- LOCAL
- NONE
- CHANGED
- REQUIRED
- HIGH
- NONE
- HIGH
CWE-404 - Improper Resource Shutdown or Release
The program does not release or incorrectly releases a resource before it is made available for re-use.
References
Advisory Timeline
- Published