Описание
OpenStack Identity (Keystone) Folsom, Grizzly 2013.1.3 and earlier, and Havana before havana-3 does not properly revoke user tokens when a tenant is disabled, which allows remote authenticated users to retain access via the token.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | not-affected | 1:2013.2~rc4-0ubuntu1 |
| lucid | DNE | |
| precise | not-affected | |
| quantal | released | 2012.2.4-0ubuntu3.2 |
| raring | released | 1:2013.1.3-0ubuntu1.1 |
| saucy | not-affected | 1:2013.2~rc4-0ubuntu1 |
| upstream | released | 1:2013.2~rc4 |
Показывать по
EPSS
6.5 Medium
CVSS2
Связанные уязвимости
OpenStack Identity (Keystone) Folsom, Grizzly 2013.1.3 and earlier, and Havana before havana-3 does not properly revoke user tokens when a tenant is disabled, which allows remote authenticated users to retain access via the token.
OpenStack Identity (Keystone) Folsom, Grizzly 2013.1.3 and earlier, and Havana before havana-3 does not properly revoke user tokens when a tenant is disabled, which allows remote authenticated users to retain access via the token.
OpenStack Identity (Keystone) Folsom, Grizzly 2013.1.3 and earlier, an ...
OpenStack Identity (Keystone) Folsom, Grizzly 2013.1.3 and earlier, and Havana before havana-3 does not properly revoke user tokens when a tenant is disabled, which allows remote authenticated users to retain access via the token.
EPSS
6.5 Medium
CVSS2