Bug 2535503 (CVE-2026-63127)
| Summary: | CVE-2026-63127 rmcp: RMCP: Token impersonation via missing OAuth resource field validation | ||
|---|---|---|---|
| Product: | [Other] Security Response | Reporter: | OSIDB Bzimport <bzimport> |
| Component: | vulnerability | Assignee: | Product Security <prodsec-ir-bot> |
| Status: | NEW --- | QA Contact: | |
| Severity: | high | Docs Contact: | |
| Priority: | high | ||
| Version: | unspecified | CC: | rhel-process-autobot, watson-tool-maintainers |
| Target Milestone: | --- | Keywords: | Security |
| Target Release: | --- | ||
| Hardware: | All | ||
| OS: | Linux | ||
| Whiteboard: | |||
| Fixed In Version: | Doc Type: | --- | |
| Doc Text: |
A flaw was found in rmcp, a Rust SDK for the Model Context Protocol. The OAuth implementation in rmcp omits the RFC 9728 resource field from ResourceServerMetadata. This allows a malicious Model Context Protocol (MCP) server to publish metadata for a different legitimate MCP resource. Consequently, a victim connecting to the malicious server may obtain a legitimate access token, which the client then sends to the malicious server. This enables the attacker to capture the token and impersonate the victim against the legitimate MCP resource within the token's granted scopes, leading to unauthorized access and information disclosure.
|
Story Points: | --- |
| Clone Of: | Environment: | ||
| Last Closed: | Type: | --- | |
| Regression: | --- | Mount Type: | --- |
| Documentation: | --- | CRM: | |
| Verified Versions: | Category: | --- | |
| oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
| Cloudforms Team: | --- | Target Upstream Version: | |
| Embargoed: | |||
| Bug Depends On: | 2535525, 2535526 | ||
| Bug Blocks: | |||
|
Description
OSIDB Bzimport
2026-09-16 15:05:10 UTC
|