Security Advisory

CVE-2022-24901

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-05-04 01:10:08
Last updated 2025-04-23 18:31:29
Assigner GitHub_M
State PUBLISHED

Description

Improper validation of the Apple certificate URL in the Apple Game Center authentication adapter allows attackers to bypass authentication, making the server vulnerable to DoS attacks. The vulnerability has been fixed by improving the URL validation and adding additional checks of the resource the URL points to before downloading it.