CVE-2017-2621
published 2018-07-27CVE-2017-2621: An access-control flaw was found in the OpenStack Orchestration (heat) service before 8.0.0, 6.1.0 and 7.0.2 where a service log directory was improperly made…
PriorityP423medium5.5CVSS 3.1
AVLACLPRLUINSUCHINAN
EPSS
0.41%
33.5th percentile
An access-control flaw was found in the OpenStack Orchestration (heat) service before 8.0.0, 6.1.0 and 7.0.2 where a service log directory was improperly made world readable. A malicious system user could exploit this flaw to access sensitive information.
Affected
9 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | heat | — | — |
| openstack | heat | < 8.0.0 | 8.0.0 |
| openstack | heat | >= 0 < 2014.1.5-0ubuntu1 | 2014.1.5-0ubuntu1 |
| openstack | heat | >= 0 < 1:6.1.2-0ubuntu1 | 1:6.1.2-0ubuntu1 |
| red_hat | openstack-heat | — | — |
| red_hat | openstack-heat | — | — |
| red_hat | openstack-heat | — | — |
| redhat | openstack | — | — |
| redhat | openstack | — | — |
CVSS provenance
nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
nvdv3.05.9MEDIUMCVSS:3.0/AV:L/AC:L/PR:L/UI:R/S:C/C:H/I:N/A:N
nvdv2.02.1LOWAV:L/AC:L/Au:N/C:P/I:N/A:N
osv5.5MEDIUM
vendor_debian5.5LOW
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-93f2-xp2g-gqxp: An access-control flaw was found in the OpenStack Orchestration (heat) service before 8
ghsa_unreviewed·2022-05-03
CVE-2017-2621 [MEDIUM] CWE-532 GHSA-93f2-xp2g-gqxp: An access-control flaw was found in the OpenStack Orchestration (heat) service before 8
An access-control flaw was found in the OpenStack Orchestration (heat) service before 8.0.0, 6.1.0 and 7.0.2 where a service log directory was improperly made world readable. A malicious system user could exploit this flaw to access sensitive information.
OSV
CVE-2017-2621: An access-control flaw was found in the OpenStack Orchestration (heat) service before 8
osv·2018-07-27·CVSS 5.5
CVE-2017-2621 [MEDIUM] CVE-2017-2621: An access-control flaw was found in the OpenStack Orchestration (heat) service before 8
An access-control flaw was found in the OpenStack Orchestration (heat) service before 8.0.0, 6.1.0 and 7.0.2 where a service log directory was improperly made world readable. A malicious system user could exploit this flaw to access sensitive information.
Red Hat
openstack-heat: /var/log/heat/ is world readable
vendor_redhat·2017-02-15·CVSS 5.5
CVE-2017-2621 [MEDIUM] CWE-552 openstack-heat: /var/log/heat/ is world readable
openstack-heat: /var/log/heat/ is world readable
An access-control flaw was found in the OpenStack Orchestration (heat) service before 8.0.0, 6.1.0 and 7.0.2 where a service log directory was improperly made world readable. A malicious system user could exploit this flaw to access sensitive information.
An access-control flaw was found in the OpenStack Orchestration (heat) service where a service log directory was improperly made world readable. A malicious system user could exploit this flaw to access sensitive information.
Package: openstack-heat (Red Hat Enterprise Linux OpenStack Platform 5 (Icehouse)) - Not affected
Package: openstack-heat (Red Hat Enterprise Linux OpenStack Platform 6 (Juno)) - Not affected
Package: openstack-heat (Red Hat Enterprise Linux OpenStack Platform 7 (
Debian
CVE-2017-2621: heat - An access-control flaw was found in the OpenStack Orchestration (heat) service b...
vendor_debian·2017·CVSS 5.5
CVE-2017-2621 [MEDIUM] CVE-2017-2621: heat - An access-control flaw was found in the OpenStack Orchestration (heat) service b...
An access-control flaw was found in the OpenStack Orchestration (heat) service before 8.0.0, 6.1.0 and 7.0.2 where a service log directory was improperly made world readable. A malicious system user could exploit this flaw to access sensitive information.
Scope: local
bookworm: resolved
bullseye: resolved
forky: resolved
sid: resolved
trixie: resolved
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2017-2621 openstack-heat: /var/log/heat/ is world readable [openstack-rdo]
bugzilla·2017-02-14·CVSS 5.5
CVE-2017-2621 [MEDIUM] CVE-2017-2621 openstack-heat: /var/log/heat/ is world readable [openstack-rdo]
CVE-2017-2621 openstack-heat: /var/log/heat/ is world readable [openstack-rdo]
This as an RDO Project security tracking bug against openstack-heat. It was created
to ensure that one or more security vulnerabilities are fixed.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
[bug automatically created by: add-tracking-bugs]
Discussion:
Fix proposed: https://review.rdoproject.org/r/5252
---
Fix has now merged.
Bugzilla
CVE-2017-2621 openstack-heat: /var/log/heat/ is world readable
bugzilla·2017-02-10·CVSS 5.5
CVE-2017-2621 [MEDIUM] CVE-2017-2621 openstack-heat: /var/log/heat/ is world readable
CVE-2017-2621 openstack-heat: /var/log/heat/ is world readable
The directory /var/log/heat is world readable and contains log files that are readable, which can result in the exposure of sensitive information. The 'other readable/execute' bits need to be removed from the /var/log/heat directory:
[stack@instack ~]$ ls -la /var/log/heat
total 39376
drwxr-xr-x. 2 heat root 4096 Feb 9 01:07 .
drwxr-xr-x. 31 root root 4096 Feb 9 01:02 ..
-rw-r--r--. 1 heat heat 201578 Feb 9 20:09 heat-api-cfn.log
-rw-r--r--. 1 heat heat 4899693 Feb 9 20:09 heat-api.log
-rw-r--r--. 1 heat heat 35193112 Feb 9 23:40 heat-engine.log
Discussion:
Acknowledgments:
Name: Hans Feldt (Ericsson)
---
Created openstack-heat tracking bugs for this issue:
Affects: openstack-rdo [bug 1422265]
---
This issue has been
http://www.securityfocus.com/bid/96280https://access.redhat.com/errata/RHSA-2017:1243https://access.redhat.com/errata/RHSA-2017:1464https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2017-2621http://www.securityfocus.com/bid/96280https://access.redhat.com/errata/RHSA-2017:1243https://access.redhat.com/errata/RHSA-2017:1464https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2017-2621
2018-07-27
Published