Upstream information
Description
python-keystoneclient version 0.2.3 to 0.2.5 has middleware memcache encryption bypassSUSE information
Overall state of this security issue: Resolved
This issue is currently rated as having critical severity.
NVD | |
---|---|
Base Score | 7.5 |
Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Access Vector | Network |
Access Complexity | Low |
Authentication | None |
Confidentiality Impact | Partial |
Integrity Impact | Partial |
Availability Impact | Partial |
Base Score |
Vector |
Attack Vector |
Attack Complexity |
Privileges Required |
User Interaction |
Scope |
Confidentiality Impact |
Integrity Impact |
Availability Impact |
CVSSv3 Version |
SUSE Security Advisories:
- SUSE-SU-2014:0089-1, published Fri Jan 17 11:04:10 MST 2014
List of released packages
Product(s) | Fixed package version(s) | References |
---|---|---|
SUSE OpenStack Cloud 2.0 |
| Patchnames: sleclo20sp3-python-keystoneclient |
SUSE Timeline for this CVE
CVE page created: Thu Jun 27 19:37:41 2013CVE page last modified: Mon Sep 9 17:11:43 2024