CVE-2017-9270: Opensuse Cryptctl

Critical severity, CVSS 9.1. EPSS: 1.9% chance of exploitation in the next 30 days.

In cryptctl before version 2.0 a malicious server could send RPC requests that could overwrite files outside of the cryptctl key database.

Affected products

Published 2018-03-01. Last modified 2026-06-17.