Skip to main content

Excessive Iteration

CVE-2023-38200

Severity High
Score 7.5/10

Summary

A flaw was found in Keylime in versions prior to 7.4.0. Due to their blocking nature, the Keylime registrar is subject to a remote Denial of Service (DoS) against its SSL connections. This flaw allows an attacker to exhaust all available connections.

  • LOW
  • NETWORK
  • NONE
  • UNCHANGED
  • NONE
  • NONE
  • NONE
  • HIGH

CWE-834 - Excessive Iteration

The software performs an iteration or loop without sufficiently limiting the number of times that the loop is executed.

Advisory Timeline

  • Published