Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2022-23452

Опубликовано: 01 сент. 2022
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS3: 4.9

Описание

An authorization flaw was found in openstack-barbican, where anyone with an admin role could add secrets to a different project container. This flaw allows an attacker on the network to consume protected resources and cause a denial of service.

РелизСтатусПримечание
bionic

released

1:6.0.1-0ubuntu1.1
devel

not-affected

2:14.0.0-0ubuntu1
esm-apps/xenial

not-affected

code not present
esm-infra/bionic

released

1:6.0.1-0ubuntu1.1
esm-infra/focal

released

1:10.1.0-0ubuntu2.1
focal

released

1:10.1.0-0ubuntu2.1
impish

released

2:13.0.0-0ubuntu1.2
jammy

not-affected

2:14.0.0-0ubuntu1
trusty

ignored

end of standard support
upstream

released

14.0.0

Показывать по

EPSS

Процентиль: 59%
0.0038
Низкий

4.9 Medium

CVSS3

Связанные уязвимости

CVSS3: 3.8
redhat
около 4 лет назад

An authorization flaw was found in openstack-barbican, where anyone with an admin role could add secrets to a different project container. This flaw allows an attacker on the network to consume protected resources and cause a denial of service.

CVSS3: 4.9
nvd
больше 3 лет назад

An authorization flaw was found in openstack-barbican, where anyone with an admin role could add secrets to a different project container. This flaw allows an attacker on the network to consume protected resources and cause a denial of service.

CVSS3: 4.9
debian
больше 3 лет назад

An authorization flaw was found in openstack-barbican, where anyone wi ...

CVSS3: 4.9
github
больше 3 лет назад

openstack-barbican Denial of Service vulnerability

EPSS

Процентиль: 59%
0.0038
Низкий

4.9 Medium

CVSS3