vulnerability
Rocky Linux: CVE-2021-4213: pki-core-10.6 (RLSA-2022-1851)
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 8 | (AV:N/AC:L/Au:N/C:N/I:N/A:C) | Aug 24, 2022 | Mar 5, 2024 | Mar 31, 2026 |
Severity
8
CVSS
(AV:N/AC:L/Au:N/C:N/I:N/A:C)
Published
Aug 24, 2022
Added
Mar 5, 2024
Modified
Mar 31, 2026
Description
A flaw was found in JSS, where it did not properly free up all memory. Over time, the wasted memory builds up in the server memory, saturating the server’s RAM. This flaw allows an attacker to force the invocation of an out-of-memory process, causing a denial of service.
Solutions
rocky-upgrade-jssrocky-upgrade-jss-debuginforocky-upgrade-jss-debugsourcerocky-upgrade-jss-javadocrocky-upgrade-pki-core-debuginforocky-upgrade-pki-core-debugsourcerocky-upgrade-pki-symkeyrocky-upgrade-pki-symkey-debuginforocky-upgrade-pki-toolsrocky-upgrade-pki-tools-debuginfo
Rapid7 Labs
2026 Global Threat Landscape Report
The predictive window has collapsed. Exploitation follows disclosure in days. See how attackers are accelerating and how to stay ahead.