Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2013-2059

Опубликовано: 21 мая 2013
Источник: debian

Описание

OpenStack Identity (Keystone) Folsom 2012.2.4 and earlier, Grizzly before 2013.1.1, and Havana does not immediately revoke the authentication token when deleting a user through the Keystone v2 API, which allows remote authenticated users to retain access via the token.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
keystonefixed2013.1.1-2package
keystonefixed2012.1.1-13+wheezy1wheezypackage

Примечания

  • http://lists.openstack.org/pipermail/openstack-announce/2013-May/000099.html

Связанные уязвимости

ubuntu
больше 12 лет назад

OpenStack Identity (Keystone) Folsom 2012.2.4 and earlier, Grizzly before 2013.1.1, and Havana does not immediately revoke the authentication token when deleting a user through the Keystone v2 API, which allows remote authenticated users to retain access via the token.

redhat
больше 12 лет назад

OpenStack Identity (Keystone) Folsom 2012.2.4 and earlier, Grizzly before 2013.1.1, and Havana does not immediately revoke the authentication token when deleting a user through the Keystone v2 API, which allows remote authenticated users to retain access via the token.

nvd
больше 12 лет назад

OpenStack Identity (Keystone) Folsom 2012.2.4 and earlier, Grizzly before 2013.1.1, and Havana does not immediately revoke the authentication token when deleting a user through the Keystone v2 API, which allows remote authenticated users to retain access via the token.

CVSS3: 4.3
github
больше 3 лет назад

OpenStack Identity (Keystone) improper revoking of the authentication token when deleting a user