Vulnerabilities > RPM Ostree

DATE CVE VULNERABILITY TITLE RISK
2018-07-27 CVE-2017-2623 Improper Certificate Validation vulnerability in multiple products
It was discovered that rpm-ostree and rpm-ostree-client before 2017.3 fail to properly check GPG signatures on packages when doing layering.
network
high complexity
rpm-ostree redhat CWE-295
5.3