CVE-2017-7509: Red Hat Certificate System

Medium severity, CVSS 6.5. EPSS: 0.7% chance of exploitation in the next 30 days.

An input validation error was found in Red Hat Certificate System's handling of client provided certificates before 8.1.20-1. If the certreq field is not present in a certificate an assertion error is triggered causing a denial of service.

Affected products

  • Red Hat Certificate System: before 8.1.20-1 (fixed in 8.1.20-1)

Published 2018-07-26. Last modified 2026-06-17.