Lucene search

K
redhatcveRedhat.comRH:CVE-2016-4979
HistoryJul 06, 2016 - 2:18 p.m.

CVE-2016-4979

2016-07-0614:18:35
redhat.com
access.redhat.com
15

0.002 Low

EPSS

Percentile

59.3%

A flaw was found in the way httpd performed client authentication using X.509 client certificates. When the HTTP/2 protocol was enabled, a remote attacker could use this flaw to access resources protected by certificate authentication without providing a valid client certificate.