目標達成 すべての支援者に感謝 — 100%達成しました!

目標: 1000 CNY · 調達済み: 1336 CNY

100%

CVE-2026-73196— FreeIPA otptoken-add 认证拒绝服务漏洞

CVSS 4.3 · Medium EPSS 0.22% · P13

Possible ATT&CK Techniques 1AI

T1499 · Endpoint Denial of Service

Affected Version Matrix 5

新しい脆弱性情報の通知を購読するログインして購読

I. CVE-2026-73196の基本情報

脆弱性情報

脆弱性についてご質問がありますか?Shenlongの分析が参考になるかご確認ください!
Shenlongの10の質問を表示 ↗

高度な大規模言語モデル技術を使用していますが、出力には不正確または古い情報が含まれる可能性があります。Shenlongはデータの正確性を確保するよう努めていますが、実際の状況に基づいて検証・判断してください。

脆弱性タイトル
Ipa: freeipa: authenticated dos in `otptoken-add` via unbounded otp key decoding/re-encoding
ソース: CVE Program / CVE List V5
脆弱性説明
A flaw was found in FreeIPA. A low-privilege authenticated user can exploit this vulnerability by submitting an oversized One-Time Password (OTP) key value. This oversized key is then decoded and re-encoded without proper size limits, consuming excessive CPU and memory resources. This can lead to a denial of service, degrading the availability of the IPA service.
ソース: CVE Program / CVE List V5
CVSS情報
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L
ソース: CVE Program / CVE List V5
脆弱性タイプ
不加限制或调节的资源分配
ソース: CVE Program / CVE List V5

影響を受ける製品

ベンダープロダクト影響を受けるバージョンCPE購読
Red HatRed Hat Enterprise Linux 10-cpe:/o:redhat:enterprise_linux:10
Red HatRed Hat Enterprise Linux 6-cpe:/o:redhat:enterprise_linux:6
Red HatRed Hat Enterprise Linux 7-cpe:/o:redhat:enterprise_linux:7
Red HatRed Hat Enterprise Linux 8-cpe:/o:redhat:enterprise_linux:8
Red HatRed Hat Enterprise Linux 9-cpe:/o:redhat:enterprise_linux:9

II. CVE-2026-73196の公開POC

#POC説明ソースリンクShenlongリンク
AI生成POCプレミアム

公開POCは見つかりませんでした。

ログインしてAI POCを生成

III. CVE-2026-73196のインテリジェンス情報

登录查看更多情报信息。

CVE-2026-73196 厂商安全公告 (2)

Same Patch Batch · Red Hat · 2026-08-20 · 16 CVEs total

CVE-2026-675679.9 CRITICALMulticloud-operators-subscription: multicloud-operators-subscription: helmrelease chart ap
CVE-2026-667889.9 CRITICALLighthouse: lighthouse: arbitrary local-namespace injection via attacker-controlled labels
CVE-2026-667859.9 CRITICALSubmariner: submariner: unvalidated endpoint.spec.subnets propagated into wireguard allowe
CVE-2026-118619.6 CRITICALFreeipa: idm: ipa: freeipa: obtaining tgs with impersonating cname through trust relations
CVE-2026-130979.1 CRITICALIpa: privilege escalation via krbcanonicalname manipulation due to realm-unaware uniquenes
CVE-2026-667878.7 HIGHLighthouse: lighthouse: cross-cluster dns spoofing via unvalidated endpointslice and servi
CVE-2026-771768.1 HIGHKata-containers: insufficient validation of createcontainer mount and storage rules in gen
CVE-2026-189177.8 HIGHLibvirt: integer overflow in nodegetfreepages rpc handler leading to heap buffer overflow
CVE-2026-195827.8 HIGHBinutils: stack buffer overflow in gnu binutils in rsrc_print_name from an untrusted pe fi
CVE-2026-731377.7 HIGHMulticloud-operators-subscription: multicloud-operators-subscription: cross-namespace secr
CVE-2026-731987.5 HIGHIpa: freeipa: unauthenticated dos in `/ipa/i18n_messages` via unbounded request body read
CVE-2026-731977.5 HIGHIpa: freeipa: unauthenticated dos in `/ipa/migration/migration.py` via unbounded request b
CVE-2026-196117.4 HIGHWildfly-elytron: org.wildfly.security/wildfly-elytron-password-impl: wildfly-elytron: pass
CVE-2026-731996.5 MEDIUMIpa: freeipa: null pointer dereference in `ipa-enrollment` extended operation (`join_oid`)
CVE-2026-770145.3 MEDIUMLibsoup: libsoup: integer truncation in sort_ranges() comparator causes silent omission of

IV. 関連脆弱性

V. CVE-2026-73196へのコメント

まだコメントはありません


コメントを残す