Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2023-1636

Опубликовано: 21 апр. 2023
Источник: redhat
CVSS3: 6
EPSS Низкий

Описание

A vulnerability was found in OpenStack Barbican containers. This vulnerability is only applicable to deployments that utilize an all-in-one configuration. Barbican containers share the same CGROUP, USER, and NET namespace with the host system and other OpenStack services. If any service is compromised, it could gain access to the data transmitted to and from Barbican.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat OpenStack Platform 13 (Queens)openstack-barbicanNot affected
Red Hat OpenStack Platform 16.1openstack-barbicanWill not fix
Red Hat OpenStack Platform 16.2openstack-barbicanWill not fix
Red Hat OpenStack Platform 17.0openstack-barbicanWill not fix
Red Hat OpenStack Platform 18.0openstack-barbicanAffected

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-653
https://bugzilla.redhat.com/show_bug.cgi?id=2181765openstack-barbican: incomplete container isolation

EPSS

Процентиль: 22%
0.00074
Низкий

6 Medium

CVSS3

Связанные уязвимости

CVSS3: 6
ubuntu
больше 2 лет назад

A vulnerability was found in OpenStack Barbican containers. This vulnerability is only applicable to deployments that utilize an all-in-one configuration. Barbican containers share the same CGROUP, USER, and NET namespace with the host system and other OpenStack services. If any service is compromised, it could gain access to the data transmitted to and from Barbican.

CVSS3: 6
nvd
больше 2 лет назад

A vulnerability was found in OpenStack Barbican containers. This vulnerability is only applicable to deployments that utilize an all-in-one configuration. Barbican containers share the same CGROUP, USER, and NET namespace with the host system and other OpenStack services. If any service is compromised, it could gain access to the data transmitted to and from Barbican.

CVSS3: 6
debian
больше 2 лет назад

A vulnerability was found in OpenStack Barbican containers. This vulne ...

CVSS3: 5
redos
10 дней назад

Уязвимость openstack-barbican

CVSS3: 6
github
больше 2 лет назад

OpenStack Barbican information disclosure vulnerability

EPSS

Процентиль: 22%
0.00074
Низкий

6 Medium

CVSS3