CVE-2024-10973

CVSS V2 None CVSS V3 None
Description
A vulnerability was found in Keycloak. The environment option `KC_CACHE_EMBEDDED_MTLS_ENABLED` does not work and the JGroups replication configuration is always used in plain text which can allow an attacker that has access to adjacent networks related to JGroups to read sensitive information.
Overview
  • CVE ID
  • CVE-2024-10973
  • Assigner
  • redhat
  • Vulnerability Status
  • PUBLISHED
  • Published Version
  • 2024-12-17T22:59:38.518Z
  • Last Modified Date
  • 2024-12-17T22:59:38.518Z
References
Reference URL Reference Tags
https://access.redhat.com/security/cve/CVE-2024-10973 vdb-entry x_refsource_REDHAT
https://bugzilla.redhat.com/show_bug.cgi?id=2324361 issue-tracking x_refsource_REDHAT
History
Created Old Value New Value Data Type Notes
2024-12-18 13:10:12 Added to TrackCVE