Dogtag PKI is a designed enterprise software system manage enterprise Public Key Infrastructure deployments.
Security Fix(es):
Access to external entities when parsing XML documents can lead to XML external entity (XXE) attacks. This flaw allows a remote attacker to potentially retrieve the content of arbitrary files by sending specially crafted HTTP requests.(CVE-2022-2414)
{
"severity": "High"
}{
"noarch": [
"pki-tks-11.0.0-5.oe2203sp2.noarch.rpm",
"python3-pki-11.0.0-5.oe2203sp2.noarch.rpm",
"pki-base-java-11.0.0-5.oe2203sp2.noarch.rpm",
"pki-ca-11.0.0-5.oe2203sp2.noarch.rpm",
"pki-base-11.0.0-5.oe2203sp2.noarch.rpm",
"pki-help-11.0.0-5.oe2203sp2.noarch.rpm",
"pki-ocsp-11.0.0-5.oe2203sp2.noarch.rpm",
"pki-server-11.0.0-5.oe2203sp2.noarch.rpm",
"pki-kra-11.0.0-5.oe2203sp2.noarch.rpm"
],
"src": [
"pki-core-11.0.0-5.oe2203sp2.src.rpm"
],
"x86_64": [
"pki-core-debugsource-11.0.0-5.oe2203sp2.x86_64.rpm",
"pki-tools-11.0.0-5.oe2203sp2.x86_64.rpm",
"pki-tps-11.0.0-5.oe2203sp2.x86_64.rpm",
"pki-symkey-11.0.0-5.oe2203sp2.x86_64.rpm",
"pki-core-debuginfo-11.0.0-5.oe2203sp2.x86_64.rpm"
],
"aarch64": [
"pki-core-debuginfo-11.0.0-5.oe2203sp2.aarch64.rpm",
"pki-symkey-11.0.0-5.oe2203sp2.aarch64.rpm",
"pki-tps-11.0.0-5.oe2203sp2.aarch64.rpm",
"pki-core-debugsource-11.0.0-5.oe2203sp2.aarch64.rpm",
"pki-tools-11.0.0-5.oe2203sp2.aarch64.rpm"
]
}