cbcvebase.

Redhat Openstack Platform vulnerabilities

39 known vulnerabilities affecting redhat/openstack_platform.

Total CVEs
39
CISA KEV
1
actively exploited
Public exploits
3
Exploited in wild
2
Severity breakdown
CRITICAL1HIGH16MEDIUM20LOW2

Vulnerabilities

Page 2 of 2
CVE-2022-3100P3MEDIUMCVSS 5.9v13.02023-01-18
CVE-2022-3100 [MEDIUM] CWE-305 CVE-2022-3100: A flaw was found in the openstack-barbican component. This issue allows an access policy bypass via A flaw was found in the openstack-barbican component. This issue allows an access policy bypass via a query string when accessing the API.
nvd
CVE-2020-14365P4HIGHCVSS 7.1v10.0v13.02020-09-23
CVE-2020-14365 [HIGH] CWE-347 CVE-2020-14365: A flaw was found in the Ansible Engine, in ansible-engine 2.8.x before 2.8.15 and ansible-engine 2.9 A flaw was found in the Ansible Engine, in ansible-engine 2.8.x before 2.8.15 and ansible-engine 2.9.x before 2.9.13, when installing packages using the dnf module. GPG signatures are ignored during installation even when disable_gpg_check is set to False, which is the default behavior. This flaw leads to malicious packages being installed on the syst
nvd
CVE-2022-2447P4MEDIUMCVSS 6.6v16.1v16.22022-09-01
CVE-2022-2447 [MEDIUM] CWE-324 CVE-2022-2447: A flaw was found in Keystone. There is a time lag (up to one hour in a default configuration) betwee A flaw was found in Keystone. There is a time lag (up to one hour in a default configuration) between when security policy says a token should be revoked from when it is actually revoked. This could allow a remote administrator to secretly maintain access for longer than expected.
nvd
CVE-2022-3277P4MEDIUMCVSS 6.5v13.0v16.1+1 more2023-03-06
CVE-2022-3277 [MEDIUM] CWE-400 CVE-2022-3277: An uncontrolled resource consumption flaw was found in openstack-neutron. This flaw allows a remote An uncontrolled resource consumption flaw was found in openstack-neutron. This flaw allows a remote authenticated user to query a list of security groups for an invalid project. This issue creates resources that are unconstrained by the user's quota. If a malicious user were to submit a significant number of requests, this could lead to a denial of ser
nvd
CVE-2020-25658P4MEDIUMCVSS 5.9v13.0v16.02020-11-12
CVE-2020-25658 [MEDIUM] CWE-385 CVE-2020-25658: It was found that python-rsa is vulnerable to Bleichenbacher timing attacks. An attacker can use thi It was found that python-rsa is vulnerable to Bleichenbacher timing attacks. An attacker can use this flaw via the RSA decryption API to decrypt parts of the cipher text encrypted with RSA.
nvd
CVE-2022-0866P4MEDIUMCVSS 5.3v13.02022-05-10
CVE-2022-0866 [MEDIUM] CWE-863 CVE-2022-0866: This is a concurrency issue that can result in the wrong caller principal being returned from the se This is a concurrency issue that can result in the wrong caller principal being returned from the session context of an EJB that is configured with a RunAs principal. In particular, the org.jboss.as.ejb3.component.EJBComponent class has an incomingRunAsIdentity field. This field is used by the org.jboss.as.ejb3.security.RunAsPrincipalInterceptor to ke
nvd
CVE-2023-1625P4MEDIUMCVSS 5.0v13.0v16.1+2 more2023-09-24
CVE-2023-1625 [MEDIUM] CWE-202 CVE-2023-1625: An information leak was discovered in OpenStack heat. This issue could allow a remote, authenticated An information leak was discovered in OpenStack heat. This issue could allow a remote, authenticated attacker to use the 'stack show' command to reveal parameters which are supposed to remain hidden. This has a low impact to the confidentiality, integrity, and availability of the system.
nvd
CVE-2023-1636P4MEDIUMCVSS 5.0v16.1v16.2+1 more2023-09-24
CVE-2023-1636 [MEDIUM] CWE-653 CVE-2023-1636: A vulnerability was found in OpenStack Barbican containers. This vulnerability is only applicable to A vulnerability was found in OpenStack Barbican containers. This vulnerability is only applicable to deployments that utilize an all-in-one configuration. Barbican containers share the same CGROUP, USER, and NET namespace with the host system and other OpenStack services. If any service is compromised, it could gain access to the data transmitted to a
nvd
CVE-2023-6725P4MEDIUMCVSS 5.5v17.12024-03-15
CVE-2023-6725 [MEDIUM] CWE-1220 CVE-2023-6725: An access-control flaw was found in the OpenStack Designate component where private configuration in An access-control flaw was found in the OpenStack Designate component where private configuration information including access keys to BIND were improperly made world readable. A malicious attacker with access to any container could exploit this flaw to access sensitive information.
nvd
CVE-2021-20257P4MEDIUMCVSS 6.5v10.0v13.02022-03-16
CVE-2021-20257 [MEDIUM] CWE-835 CVE-2021-20257: An infinite loop flaw was found in the e1000 NIC emulator of the QEMU. This issue occurs while proce An infinite loop flaw was found in the e1000 NIC emulator of the QEMU. This issue occurs while processing transmits (tx) descriptors in process_tx_desc if various descriptor fields are initialized with invalid values. This flaw allows a guest to consume CPU cycles on the host, resulting in a denial of service. The highest threat from this vulnerabil
nvd
CVE-2020-1690P4MEDIUMCVSS 6.5v15.0v16.12021-06-07
CVE-2020-1690 [MEDIUM] CWE-285 CVE-2020-1690: An improper authorization flaw was discovered in openstack-selinux's applied policy where it does no An improper authorization flaw was discovered in openstack-selinux's applied policy where it does not prevent a non-root user in a container from privilege escalation. A non-root attacker in one or more Red Hat OpenStack (RHOSP) containers could send messages to the dbus. With access to the dbus, the attacker could start or stop services, possibly cau
nvd
CVE-2023-1932P4MEDIUMCVSS 6.1v13.02024-11-07
CVE-2023-1932 [MEDIUM] CWE-79 CVE-2023-1932: A flaw was found in hibernate-validator's 'isValid' method in the org.hibernate.validator.internal.c A flaw was found in hibernate-validator's 'isValid' method in the org.hibernate.validator.internal.constraintvalidators.hv.SafeHtmlValidator class, which can be bypassed by omitting the tag ending in a less-than character. Browsers may render an invalid html, allowing HTML injection or Cross-Site-Scripting (XSS) attacks.
nvd
CVE-2023-1633P4MEDIUMCVSS 5.5v16.1v16.2+1 more2023-09-24
CVE-2023-1633 [MEDIUM] CWE-200 CVE-2023-1633: A credentials leak flaw was found in OpenStack Barbican. This flaw allows a local authenticated atta A credentials leak flaw was found in OpenStack Barbican. This flaw allows a local authenticated attacker to read the configuration file, gaining access to sensitive credentials.
nvd
CVE-2022-0718P4MEDIUMCVSS 4.9v16.12022-08-29
CVE-2022-0718 [MEDIUM] CWE-522 CVE-2022-0718: A flaw was found in python-oslo-utils. Due to improper parsing, passwords with a double quote ( " ) A flaw was found in python-oslo-utils. Due to improper parsing, passwords with a double quote ( " ) in them cause incorrect masking in debug logs, causing any part of the password after the double quote to be plaintext.
nvd
CVE-2024-7319P4MEDIUMCVSS 5.0v13.0v16.1+2 more2024-08-02
CVE-2024-7319 [MEDIUM] CVE-2024-7319: An incomplete fix for CVE-2023-1625 was found in openstack-heat. Sensitive information may possibly An incomplete fix for CVE-2023-1625 was found in openstack-heat. Sensitive information may possibly be disclosed through the OpenStack stack abandon command with the hidden feature set to True and the CVE-2023-1625 fix applied.
nvd
CVE-2019-12067P4MEDIUMCVSS 6.5v10.0v14.02021-06-02
CVE-2019-12067 [MEDIUM] CWE-476 CVE-2019-12067: The ahci_commit_buf function in ide/ahci.c in QEMU allows attackers to cause a denial of service (NU The ahci_commit_buf function in ide/ahci.c in QEMU allows attackers to cause a denial of service (NULL dereference) when the command header 'ad->cur_cmd' is null.
nvd
CVE-2022-23452P4MEDIUMCVSS 4.9v16.12022-09-01
CVE-2022-23452 [MEDIUM] CWE-863 CVE-2022-23452: An authorization flaw was found in openstack-barbican, where anyone with an admin role could add sec An authorization flaw was found in openstack-barbican, where anyone with an admin role could add secrets to a different project container. This flaw allows an attacker on the network to consume protected resources and cause a denial of service.
nvd
CVE-2020-14394P4LOWCVSS 3.2v10.0v13.02022-08-17
CVE-2020-14394 [LOW] CWE-835 CVE-2020-14394: An infinite loop flaw was found in the USB xHCI controller emulation of QEMU while computing the len An infinite loop flaw was found in the USB xHCI controller emulation of QEMU while computing the length of the Transfer Request Block (TRB) Ring. This flaw allows a privileged guest user to hang the QEMU process on the host, resulting in a denial of service.
nvd
CVE-2020-25743P4LOWCVSS 3.2v13.02020-10-06
CVE-2020-25743 [LOW] CWE-476 CVE-2020-25743: hw/ide/pci.c in QEMU before 5.1.1 can trigger a NULL pointer dereference because it lacks a pointer hw/ide/pci.c in QEMU before 5.1.1 can trigger a NULL pointer dereference because it lacks a pointer check before an ide_cancel_dma_sync call.
nvd
Redhat Openstack Platform vulnerabilities | cvebase