Back to bug 2158910

Who When What Removed Added
Chess Hazlett 2023-01-06 22:29:42 UTC Summary keycloak: impersonation and lockout possible through incorrect handling of email trust CVE-2023-0105 keycloak: impersonation and lockout possible through incorrect handling of email trust
Alias CVE-2023-0105
Frank Büttner 2023-01-09 11:02:59 UTC CC bugzilla
Patrick Del Bello 2023-01-11 15:57:39 UTC Doc Text A flaw was found in Keycloak. This flaws allows impersonation and lockout due to email trust not being handled correctly in Keycloak. An attacker could be able to shadow other users with the same email and lock out or impersonate them
Patrick Del Bello 2023-01-11 15:57:59 UTC Doc Text A flaw was found in Keycloak. This flaws allows impersonation and lockout due to email trust not being handled correctly in Keycloak. An attacker could be able to shadow other users with the same email and lock out or impersonate them A flaw was found in Keycloak. This flaw allows impersonation and lockout due to email trust not being handled correctly in Keycloak. An attacker could be able to shadow other users with the same email and lock out or impersonate them
RaTasha Tillery-Smith 2023-01-11 16:06:46 UTC Doc Text A flaw was found in Keycloak. This flaw allows impersonation and lockout due to email trust not being handled correctly in Keycloak. An attacker could be able to shadow other users with the same email and lock out or impersonate them A flaw was found in Keycloak. This flaw allows impersonation and lockout due to the email trust not being handled correctly in Keycloak. An attacker can shadow other users with the same email and lockout or impersonate them.
Red Hat Bugzilla 2023-07-07 08:29:18 UTC Assignee security-response-team nobody

Back to bug 2158910