Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2023-6110

Опубликовано: 17 нояб. 2024
Источник: debian
EPSS Низкий

Описание

A flaw was found in OpenStack. When a user tries to delete a non-existing access rule in it's scope, it deletes other existing access rules which are not associated with any application credentials.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
python-openstackclientfixed6.3.0-2package
python-openstackclientno-dsabookwormpackage
python-openstackclientno-dsabullseyepackage
python-openstackclientnot-affectedbusterpackage

Примечания

  • https://bugzilla.redhat.com/show_bug.cgi?id=2212960

  • https://bugzilla.redhat.com/show_bug.cgi?id=2209607

  • https://review.opendev.org/888697

EPSS

Процентиль: 40%
0.00182
Низкий

Связанные уязвимости

CVSS3: 5.5
ubuntu
около 1 года назад

A flaw was found in OpenStack. When a user tries to delete a non-existing access rule in it's scope, it deletes other existing access rules which are not associated with any application credentials.

CVSS3: 5.5
redhat
почти 2 года назад

A flaw was found in OpenStack. When a user tries to delete a non-existing access rule in it's scope, it deletes other existing access rules which are not associated with any application credentials.

CVSS3: 5.5
nvd
около 1 года назад

A flaw was found in OpenStack. When a user tries to delete a non-existing access rule in it's scope, it deletes other existing access rules which are not associated with any application credentials.

CVSS3: 5.5
github
около 1 года назад

OpenStack improperly deletes access rules

CVSS3: 5.5
fstec
почти 2 года назад

Уязвимость компонента Access Rule Handler платформы облачных сервисов Red Hat OpenStack Platform, позволяющая нарушителю выполнить отказ в обслуживании

EPSS

Процентиль: 40%
0.00182
Низкий