Junglewise Threat Intelligence

CVE-2022-3500: PYSEC-2022-42995 - A vulnerability was found in keylime. This security issue happens in some circumstances, due to some improperly handled exceptions, there ex

CVE-2022-3500 · Severity: low · CVSS 3.1 · Published 2022-11-22

Technologies: keylime (PyPI). Vendors: PyPI.

Executive brief

A vulnerability was found in keylime. This security issue happens in some circumstances, due to some improperly handled exceptions, there exists the possibility that a rogue agent could create errors on the verifier that stopped attestation attempts for that host leaving it in an attested state but not verifying that anymore.

Affected products

  • PyPI keylime

Related threats