- Description
- Mark Laing discovered that LXD's PKI mode, until version 5.21.2, could be bypassed if the client's certificate was present in the trust store.
- Source
- security@ubuntu.com
- NVD status
- Received
CVSS 3.1
- Type
- Secondary
- Base score
- 3.8
- Impact score
- 1.4
- Exploitability score
- 2
- Vector string
- CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:L/I:N/A:N
- Severity
- LOW
- Hype score
- Not currently trending