High severity8.1NVD Advisory· Published Sep 25, 2017· Updated May 13, 2026
CVE-2015-5263
CVE-2015-5263
Description
pulp-consumer-client 2.4.0 through 2.6.3 does not check the server's TLS certificate signatures when retrieving the server's public key upon registration.
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
4- github.com/pulp/pulp/commit/b542d7465f7e6e02e1ea1aec059ac607a65cefe7nvdPatchThird Party Advisory
- cve.killedkenny.io/cve/CVE-2015-5263nvdThird Party Advisory
- www.openwall.com/lists/oss-security/2015/09/24/4nvdMailing ListThird Party Advisory
- github.com/pulp/pulp/blob/aa432bf58497b5e3682333b1d5f5ae4f45788a61/client_consumer/pulp/client/consumer/cli.pynvdThird Party Advisory
News mentions
0No linked articles in our index yet.