Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2013-0266

Опубликовано: 11 фев. 2013
Источник: redhat
CVSS2: 2.1
EPSS Низкий

Описание

manifests/base.pp in the puppetlabs-cinder module, as used in PackStack, uses world-readable permissions for the (1) cinder.conf and (2) api-paste.ini configuration files, which allows local users to read OpenStack administrative passwords by reading the files.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat OpenStack Platform 2.0openstack-packstackAffected
Red Hat OpenStack Platform 2.1openstack-packstackAffected
OpenStack Folsom for RHEL 6openstack-packstackFixedRHSA-2013:059505.03.2013

Показывать по

Дополнительная информация

Статус:

Low
https://bugzilla.redhat.com/show_bug.cgi?id=908581packstack: puppetlabs-cinder / manifests / base.pp weak file permissions

EPSS

Процентиль: 13%
0.00043
Низкий

2.1 Low

CVSS2

Связанные уязвимости

nvd
почти 13 лет назад

manifests/base.pp in the puppetlabs-cinder module, as used in PackStack, uses world-readable permissions for the (1) cinder.conf and (2) api-paste.ini configuration files, which allows local users to read OpenStack administrative passwords by reading the files.

github
почти 4 года назад

manifests/base.pp in the puppetlabs-cinder module, as used in PackStack, uses world-readable permissions for the (1) cinder.conf and (2) api-paste.ini configuration files, which allows local users to read OpenStack administrative passwords by reading the files.

EPSS

Процентиль: 13%
0.00043
Низкий

2.1 Low

CVSS2