Medium severity5.5NVD Advisory· Published Jun 8, 2017· Updated Jun 17, 2026
CVE-2016-3107
CVE-2016-3107
Description
The Node certificate in Pulp before 2.8.3 contains the private key, and is stored in a world-readable file in the "/etc/pki/pulp/nodes/" directory, which allows local users to gain access to sensitive data.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3<2.8.3+ 1 more
- (no CPE)range: <2.8.3
- cpe:2.3:a:pulpproject:pulp:*:*:*:*:*:*:*:*range: <=2.8.2-1
Patches
Vulnerability mechanics
References
5- pulp.plan.io/issues/1833nvdPatchVendor Advisory
- www.openwall.com/lists/oss-security/2016/05/20/1nvdMailing ListThird Party Advisory
- bugzilla.redhat.com/attachment.cginvdIssue Tracking
- bugzilla.redhat.com/show_bug.cginvdIssue Tracking
- access.redhat.com/errata/RHBA-2016:1501nvd
News mentions
0No linked articles in our index yet.