Описание
An authorization flaw was found in openstack-barbican, where anyone with an admin role could add secrets to a different project container. This flaw allows an attacker on the network to consume protected resources and cause a denial of service.
| Релиз | Статус | Примечание |
|---|---|---|
| bionic | released | 1:6.0.1-0ubuntu1.1 |
| devel | not-affected | 2:14.0.0-0ubuntu1 |
| esm-apps/xenial | not-affected | code not present |
| esm-infra/bionic | released | 1:6.0.1-0ubuntu1.1 |
| esm-infra/focal | released | 1:10.1.0-0ubuntu2.1 |
| focal | released | 1:10.1.0-0ubuntu2.1 |
| impish | released | 2:13.0.0-0ubuntu1.2 |
| jammy | not-affected | 2:14.0.0-0ubuntu1 |
| trusty | ignored | end of standard support |
| upstream | released | 14.0.0 |
Показывать по
EPSS
4.9 Medium
CVSS3
Связанные уязвимости
An authorization flaw was found in openstack-barbican, where anyone with an admin role could add secrets to a different project container. This flaw allows an attacker on the network to consume protected resources and cause a denial of service.
An authorization flaw was found in openstack-barbican, where anyone with an admin role could add secrets to a different project container. This flaw allows an attacker on the network to consume protected resources and cause a denial of service.
An authorization flaw was found in openstack-barbican, where anyone wi ...
openstack-barbican Denial of Service vulnerability
EPSS
4.9 Medium
CVSS3