CVE-2016-5404: Medium severity red hat freeipa vulnerability
Published Sep 7, 2016
·Updated
The certrevoke command in FreeIPA does not check for the "revoke certificate" permission, which allows remote authenticated users to revoke arbitrary certificates by leveraging the "retrieve certificate" permission.
Affected Software
6 affected components
FreeIPA FreeIPA
Oracle Linux=6
Oracle Linux=7
Fedoraproject Fedora=23
Fedoraproject Fedora=24
Fedoraproject Fedora=25
Remediation
Event History
Sep 7, 2016
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2016-5404?
CVE-2016-5404 is classified as a medium severity vulnerability.
2
How do I fix CVE-2016-5404?
To resolve CVE-2016-5404, ensure appropriate permission checks are implemented for the cert_revoke command in FreeIPA.
3
Which versions of FreeIPA are affected by CVE-2016-5404?
CVE-2016-5404 affects all versions of FreeIPA that are currently in use.
4
Can unauthorized users exploit CVE-2016-5404?
Yes, CVE-2016-5404 allows remote authenticated users to revoke arbitrary certificates without proper permissions.
5
Is there a workaround for CVE-2016-5404?
Implementing strict access controls on certificate management permissions is a recommended workaround for CVE-2016-5404.