CVE-2017-9270: Opensuse Cryptctl
Critical severity, CVSS 9.1. EPSS: 1.9% chance of exploitation in the next 30 days.
In cryptctl before version 2.0 a malicious server could send RPC requests that could overwrite files outside of the cryptctl key database.
Affected products
- Opensuse Cryptctl: version 2.0 only
Published 2018-03-01. Last modified 2026-06-17.