Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2016-4911

Опубликовано: 13 июн. 2016
Источник: debian
EPSS Низкий

Описание

The Fernet Token Provider in OpenStack Identity (Keystone) 9.0.x before 9.0.1 (mitaka) allows remote authenticated users to prevent revocation of a chain of tokens and bypass intended access restrictions by rescoping a token.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
keystonefixed2:9.0.0-2package
keystonenot-affectedjessiepackage
keystonenot-affectedwheezypackage

Примечания

  • https://launchpad.net/bugs/1577558

EPSS

Процентиль: 53%
0.00304
Низкий

Связанные уязвимости

CVSS3: 4.3
ubuntu
больше 9 лет назад

The Fernet Token Provider in OpenStack Identity (Keystone) 9.0.x before 9.0.1 (mitaka) allows remote authenticated users to prevent revocation of a chain of tokens and bypass intended access restrictions by rescoping a token.

redhat
больше 9 лет назад

The Fernet Token Provider in OpenStack Identity (Keystone) 9.0.x before 9.0.1 (mitaka) allows remote authenticated users to prevent revocation of a chain of tokens and bypass intended access restrictions by rescoping a token.

CVSS3: 4.3
nvd
больше 9 лет назад

The Fernet Token Provider in OpenStack Identity (Keystone) 9.0.x before 9.0.1 (mitaka) allows remote authenticated users to prevent revocation of a chain of tokens and bypass intended access restrictions by rescoping a token.

CVSS3: 4.3
github
больше 3 лет назад

OpenStack Identity Keystone Improper Access Control

EPSS

Процентиль: 53%
0.00304
Низкий