Previously, a revoked SignatureKey belonging to a CA was not correctly checked for revocation. Now, both the key and key.SignatureKey are checked for @revoked.
The product does not validate, or incorrectly validates, a certificate.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Crypto | Golang | * | 0.52.0 (excluding) |
| Golang-go.crypto | Ubuntu | esm-apps/bionic | * |
| Golang-go.crypto | Ubuntu | esm-apps/focal | * |
| Golang-go.crypto | Ubuntu | esm-apps/jammy | * |
| Golang-go.crypto | Ubuntu | esm-apps/noble | * |
| Golang-go.crypto | Ubuntu | esm-apps/resolute | * |
| Golang-go.crypto | Ubuntu | jammy | * |
| Golang-go.crypto | Ubuntu | noble | * |
| Golang-go.crypto | Ubuntu | questing | * |
| Golang-go.crypto | Ubuntu | resolute | * |
| Golang-go.crypto | Ubuntu | upstream | * |
| Lxd | Ubuntu | esm-infra-legacy/xenial | * |
| Lxd | Ubuntu | esm-infra/bionic | * |