First published: Tue Dec 07 2021(Updated: )
A flaw exists in tang, a network-based cryptographic binding server, which could result in leak of private keys.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
Tang Project Tang | >=8<11 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-4076 is a vulnerability that exists in tang, a network-based cryptographic binding server, which could result in the leak of private keys.
The severity of CVE-2021-4076 is high with a CVSS score of 7.5.
CVE-2021-4076 could result in the leak of private keys and impact the security of Tang, a network-based cryptographic binding server.
Yes, a fix for CVE-2021-4076 is available. It is recommended to update to a version of Tang that is not affected by the vulnerability.
More information about CVE-2021-4076 can be found at the following references: [Reference 1](https://bugzilla.redhat.com/show_bug.cgi/show_bug.cgi?id=2029685) and [Reference 2](https://bugzilla.redhat.com/show_bug.cgi/show_bug.cgi?id=2032292).