CVE-2024-39689
ADVISORY - githubSummary
Certifi 2024.07.04 removes root certificates from "GLOBALTRUST" from the root store. These are in the process of being removed from Mozilla's trust store.
GLOBALTRUST's root certificates are being removed pursuant to an investigation which identified "long-running and unresolved compliance issues". Conclusions of Mozilla's investigation can be found here.
Common Weakness Enumeration (CWE)
Insufficient Verification of Data Authenticity
Insufficient Verification of Data Authenticity
Insufficient Verification of Data Authenticity
NIST
3.9
CVSS SCORE
7.5highGitHub
-
CVSS SCORE
N/AlowAlpine
-
Debian
-
CVSS SCORE
N/AlowUbuntu
3.9
CVSS SCORE
7.5lowPypA
PYSEC-2024-230
3.9
CVSS SCORE
7.5highAmazon
-
CVSS SCORE
N/AlowAmazon
-
CVSS SCORE
N/AlowRed Hat
2.2
CVSS SCORE
3.7lowChainguard
CGA-2ph7-wp75-g3rf
-
Chainguard
CGA-326j-45xp-qqrg
-
Chainguard
CGA-338r-mm9m-8f2g
-
Chainguard
CGA-3727-xg6m-m6g6
-
Chainguard
CGA-3q67-pp5m-h246
-
Chainguard
CGA-45m3-cj8x-crxc
-
Chainguard
CGA-5r72-qv7x-vvx3
-
Chainguard
CGA-6pqq-xp77-x9j5
-
Chainguard
CGA-6v56-8m7g-x649
-
Chainguard
CGA-8493-6499-2mc5
-
Chainguard
CGA-8qgh-gj56-2mhf
-
Chainguard
CGA-8qjh-972r-g663
-
Chainguard
CGA-92hv-q6xj-v6q6
-
Chainguard
CGA-c75v-5wrv-rvg2
-
Chainguard
CGA-f5h2-p64r-hgpf
-
Chainguard
CGA-f6jp-qrmx-52c4
-
Chainguard
CGA-f9vj-g6v3-782v
-
Chainguard
CGA-fhg8-gq72-6xvf
-
Chainguard
CGA-h6wc-fp5f-mqrx
-
Chainguard
CGA-h96w-2q45-hmp9
-
Chainguard
CGA-hcf8-8qrq-xmgx
-
Chainguard
CGA-hv83-mq7r-r58m
-
Chainguard
CGA-jq9v-c887-h6xm
-
Chainguard
CGA-m8x2-jj4x-r82h
-
Chainguard
CGA-mgvx-56mp-qxp4
-
Chainguard
CGA-pvg9-7wqq-v3c5
-
Chainguard
CGA-q6pm-r7m9-gp6f
-
Chainguard
CGA-qcpp-frfq-6p4h
-
Chainguard
CGA-qmg3-w4p6-6m35
-
Chainguard
CGA-r3c7-44cm-2pr4
-
Chainguard
CGA-r847-h8vf-f2vq
-
Chainguard
CGA-r8jg-r7gx-hmfh
-
Chainguard
CGA-rvmh-6c2w-5rjp
-
Chainguard
CGA-vv6c-2f8q-5phv
-
Chainguard
CGA-wgrc-28p5-r64q
-
Photon
CVE-2024-39689
-