CVE-2024-1132
This issue could allow an attacker to construct a malicious request to bypass validation and access other URLs and sensitive information within the domain or conduct further attacks.
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (1.55%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
A flaw was found in Keycloak, where it does not properly validate URLs included in a redirect. This issue could allow an attacker to construct a malicious request to bypass validation and access other URLs and sensitive information within the domain or conduct further attacks. This flaw affects any client that utilizes a wildcard in the Valid Redirect URIs field, and requires user interaction within the malicious URL.
- CVSS 3.1
- 8.1 HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:N
- EPSS
- 1.55% probability · 74th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-22
- Affected
- redhat/build of keycloak · redhat/jboss middleware text-only advisories · redhat/keycloak · redhat/migration toolkit for applications · redhat/migration toolkit for runtimes · redhat/openshift container platform · redhat/openshift container platform for ibm z · redhat/openshift container platform for linuxone · redhat/openshift container platform for power · redhat/single sign-on
- Source
- secalert@redhat.com
References
- https://access.redhat.com/errata/RHSA-2024:1860Vendor Advisory
- https://access.redhat.com/errata/RHSA-2024:1861Vendor Advisory
- https://access.redhat.com/errata/RHSA-2024:1862Vendor Advisory
- https://access.redhat.com/errata/RHSA-2024:1864Vendor Advisory
- https://access.redhat.com/errata/RHSA-2024:1866Vendor Advisory
- https://access.redhat.com/errata/RHSA-2024:1867Vendor Advisory
- https://access.redhat.com/errata/RHSA-2024:1868Vendor Advisory
- https://access.redhat.com/errata/RHSA-2024:2945Vendor Advisory
- https://access.redhat.com/errata/RHSA-2024:3752Vendor Advisory
- https://access.redhat.com/errata/RHSA-2024:3762Vendor Advisory
- https://access.redhat.com/errata/RHSA-2024:3919Vendor Advisory
- https://access.redhat.com/errata/RHSA-2024:3989Vendor Advisory
- https://access.redhat.com/security/cve/CVE-2024-1132Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2262117Issue Tracking, Vendor Advisory
- https://access.redhat.com/errata/RHSA-2024:1860Vendor Advisory
- https://access.redhat.com/errata/RHSA-2024:1861Vendor Advisory
- https://access.redhat.com/errata/RHSA-2024:1862Vendor Advisory
- https://access.redhat.com/errata/RHSA-2024:1864Vendor Advisory
- https://access.redhat.com/errata/RHSA-2024:1866Vendor Advisory
- https://access.redhat.com/errata/RHSA-2024:1867Vendor Advisory
- https://access.redhat.com/errata/RHSA-2024:1868Vendor Advisory
- https://access.redhat.com/errata/RHSA-2024:2945Vendor Advisory
- https://access.redhat.com/errata/RHSA-2024:3752Vendor Advisory
- https://access.redhat.com/errata/RHSA-2024:3762Vendor Advisory
- https://access.redhat.com/errata/RHSA-2024:3919Vendor Advisory
- https://access.redhat.com/errata/RHSA-2024:3989Vendor Advisory
- https://access.redhat.com/security/cve/CVE-2024-1132Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2262117Issue Tracking, Vendor Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.