Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2023-1636

Опубликовано: 21 апр. 2023
Источник: redhat
CVSS3: 6
EPSS Низкий

Описание

A vulnerability was found in OpenStack Barbican containers. This vulnerability is only applicable to deployments that utilize an all-in-one configuration. Barbican containers share the same CGROUP, USER, and NET namespace with the host system and other OpenStack services. If any service is compromised, it could gain access to the data transmitted to and from Barbican.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat OpenStack Platform 13 (Queens)openstack-barbicanNot affected
Red Hat OpenStack Platform 16.1openstack-barbicanWill not fix
Red Hat OpenStack Platform 16.2openstack-barbicanWill not fix
Red Hat OpenStack Platform 17.0openstack-barbicanWill not fix
Red Hat OpenStack Platform 18.0openstack-barbicanAffected

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-653
https://bugzilla.redhat.com/show_bug.cgi?id=2181765openstack-barbican: incomplete container isolation

EPSS

Процентиль: 41%
0.00484
Низкий

6 Medium

CVSS3

Связанные уязвимости

CVSS3: 6
ubuntu
около 3 лет назад

A vulnerability was found in OpenStack Barbican containers. This vulnerability is only applicable to deployments that utilize an all-in-one configuration. Barbican containers share the same CGROUP, USER, and NET namespace with the host system and other OpenStack services. If any service is compromised, it could gain access to the data transmitted to and from Barbican.

CVSS3: 6
nvd
около 3 лет назад

A vulnerability was found in OpenStack Barbican containers. This vulnerability is only applicable to deployments that utilize an all-in-one configuration. Barbican containers share the same CGROUP, USER, and NET namespace with the host system and other OpenStack services. If any service is compromised, it could gain access to the data transmitted to and from Barbican.

CVSS3: 6
debian
около 3 лет назад

A vulnerability was found in OpenStack Barbican containers. This vulne ...

CVSS3: 5
redos
8 месяцев назад

Уязвимость openstack-barbican

CVSS3: 6
github
около 3 лет назад

OpenStack Barbican information disclosure vulnerability

EPSS

Процентиль: 41%
0.00484
Низкий

6 Medium

CVSS3