Описание
An authorization flaw was found in openstack-barbican, where anyone with an admin role could add secrets to a different project container. This flaw allows an attacker on the network to consume protected resources and cause a denial of service.
Затронутые пакеты
| Платформа | Пакет | Состояние | Рекомендация | Релиз |
|---|---|---|---|---|
| Red Hat OpenStack Platform 13 (Queens) | openstack-barbican | Out of support scope | ||
| Red Hat OpenStack Platform 16.1 | openstack-barbican | Fixed | RHSA-2022:8874 | 07.12.2022 |
| Red Hat OpenStack Platform 16.2 | openstack-barbican | Fixed | RHSA-2022:5114 | 22.06.2022 |
Показывать по
Дополнительная информация
Статус:
3.8 Low
CVSS3
Связанные уязвимости
An authorization flaw was found in openstack-barbican, where anyone with an admin role could add secrets to a different project container. This flaw allows an attacker on the network to consume protected resources and cause a denial of service.
An authorization flaw was found in openstack-barbican, where anyone with an admin role could add secrets to a different project container. This flaw allows an attacker on the network to consume protected resources and cause a denial of service.
An authorization flaw was found in openstack-barbican, where anyone wi ...
openstack-barbican Denial of Service vulnerability
3.8 Low
CVSS3