Oval Definition:oval:org.opensuse.security:def:20143621
Revision Date:2020-11-28Version:1
Title:CVE-2014-3621
Description:

The catalog url replacement in OpenStack Identity (Keystone) before 2013.2.3 and 2014.1 before 2014.1.2.1 allows remote authenticated users to read sensitive configuration options via a crafted endpoint, as demonstrated by "$(admin_token)" in the publicurl endpoint field.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2014-3621
SUSE-SU-2014:1365-1
Platform(s):SUSE OpenStack Cloud 6
Product(s):
Definition Synopsis
  • SUSE OpenStack Cloud 6 is installed
  • AND Package Information
  • openstack-keystone-8.0.2~a0~dev8-1 is installed
  • OR python-keystone-8.0.2~a0~dev8-1 is installed
  • BACK