Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2023-1636

Опубликовано: 21 апр. 2023
Источник: redhat
CVSS3: 6

Описание

A vulnerability was found in OpenStack Barbican containers. This vulnerability is only applicable to deployments that utilize an all-in-one configuration. Barbican containers share the same CGROUP, USER, and NET namespace with the host system and other OpenStack services. If any service is compromised, it could gain access to the data transmitted to and from Barbican.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat OpenStack Platform 13 (Queens)openstack-barbicanNot affected
Red Hat OpenStack Platform 16.1openstack-barbicanWill not fix
Red Hat OpenStack Platform 16.2openstack-barbicanWill not fix
Red Hat OpenStack Platform 17.0openstack-barbicanWill not fix
Red Hat OpenStack Platform 18.0openstack-barbicanAffected

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-653
https://bugzilla.redhat.com/show_bug.cgi?id=2181765openstack-barbican: incomplete container isolation

6 Medium

CVSS3

Связанные уязвимости

CVSS3: 6
ubuntu
почти 3 года назад

A vulnerability was found in OpenStack Barbican containers. This vulnerability is only applicable to deployments that utilize an all-in-one configuration. Barbican containers share the same CGROUP, USER, and NET namespace with the host system and other OpenStack services. If any service is compromised, it could gain access to the data transmitted to and from Barbican.

CVSS3: 6
nvd
почти 3 года назад

A vulnerability was found in OpenStack Barbican containers. This vulnerability is only applicable to deployments that utilize an all-in-one configuration. Barbican containers share the same CGROUP, USER, and NET namespace with the host system and other OpenStack services. If any service is compromised, it could gain access to the data transmitted to and from Barbican.

CVSS3: 6
debian
почти 3 года назад

A vulnerability was found in OpenStack Barbican containers. This vulne ...

CVSS3: 6
github
почти 3 года назад

OpenStack Barbican information disclosure vulnerability

CVSS3: 6
fstec
почти 3 года назад

Уязвимость компонента openstack-barbican платформы облачных сервисов Red Hat OpenStack Platform, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

6 Medium

CVSS3