vulnerability
Red Hat: CVE-2022-2553: CVE-2022-2553 booth: authfile directive in booth config file is completely ignored. (Multiple Advisories)
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 6 | (AV:N/AC:L/Au:N/C:P/I:P/A:N) | Jul 28, 2022 | Oct 20, 2022 | Feb 20, 2026 |
Severity
6
CVSS
(AV:N/AC:L/Au:N/C:P/I:P/A:N)
Published
Jul 28, 2022
Added
Oct 20, 2022
Modified
Feb 20, 2026
Description
The authfile directive in the booth config file is ignored, preventing use of authentication in communications from node to node. As a result, nodes that do not have the correct authentication key are not prevented from communicating with other nodes in the cluster.
Solutions
redhat-upgrade-boothredhat-upgrade-booth-arbitratorredhat-upgrade-booth-coreredhat-upgrade-booth-core-debuginforedhat-upgrade-booth-debugsourceredhat-upgrade-booth-siteredhat-upgrade-booth-test
NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.