Oval Definition:oval:org.opensuse.security:def:202017516
Revision Date:2022-05-22Version:1
Title:CVE-2020-17516
Description:

Apache Cassandra versions 2.1.0 to 2.1.22, 2.2.0 to 2.2.19, 3.0.0 to 3.0.23, and 3.11.0 to 3.11.9, when using 'dc' or 'rack' internode_encryption setting, allows both encrypted and unencrypted internode connections. A misconfigured node or a malicious user can use the unencrypted connection despite not being in the same rack or dc, and bypass mutual TLS requirement.
Family:unixClass:vulnerability
Status:Reference(s):Mitre CVE-2020-17516
SUSE CVE-2020-17516
SUSE-SU-2021:1962-1
SUSE-SU-2021:2554-1
Platform(s):SUSE OpenStack Cloud 8
SUSE OpenStack Cloud 9
SUSE OpenStack Cloud Crowbar 8
SUSE OpenStack Cloud Crowbar 9
Product(s):
Definition Synopsis
  • Release Information
  • SUSE OpenStack Cloud 8 is installed
  • AND
  • ardana-cobbler-8.0+git.1614096566.e8c2b27-3.44.3 is installed
  • OR cassandra-3.11.10-5.3.5 is installed
  • OR cassandra-tools-3.11.10-5.3.5 is installed
  • OR documentation-suse-openstack-cloud-installation-8.20210512-1.32.5 is installed
  • OR documentation-suse-openstack-cloud-operations-8.20210512-1.32.5 is installed
  • OR documentation-suse-openstack-cloud-opsconsole-8.20210512-1.32.5 is installed
  • OR documentation-suse-openstack-cloud-planning-8.20210512-1.32.5 is installed
  • OR documentation-suse-openstack-cloud-security-8.20210512-1.32.5 is installed
  • OR documentation-suse-openstack-cloud-supplement-8.20210512-1.32.5 is installed
  • OR documentation-suse-openstack-cloud-upstream-admin-8.20210512-1.32.5 is installed
  • OR documentation-suse-openstack-cloud-upstream-user-8.20210512-1.32.5 is installed
  • OR documentation-suse-openstack-cloud-user-8.20210512-1.32.5 is installed
  • OR grafana-6.7.4-4.18.2 is installed
  • OR kibana-4.6.6-3.9.2 is installed
  • OR openstack-heat-templates-0.0.0+git.1623056900.7917e18-3.21.3 is installed
  • OR openstack-monasca-installer-20190923_16.32-3.18.2 is installed
  • OR openstack-nova-16.1.9~dev92-3.48.5 is installed
  • OR openstack-nova-api-16.1.9~dev92-3.48.5 is installed
  • OR openstack-nova-cells-16.1.9~dev92-3.48.5 is installed
  • OR openstack-nova-compute-16.1.9~dev92-3.48.5 is installed
  • OR openstack-nova-conductor-16.1.9~dev92-3.48.5 is installed
  • OR openstack-nova-console-16.1.9~dev92-3.48.5 is installed
  • OR openstack-nova-consoleauth-16.1.9~dev92-3.48.5 is installed
  • OR openstack-nova-doc-16.1.9~dev92-3.48.5 is installed
  • OR openstack-nova-novncproxy-16.1.9~dev92-3.48.5 is installed
  • OR openstack-nova-placement-api-16.1.9~dev92-3.48.5 is installed
  • OR openstack-nova-scheduler-16.1.9~dev92-3.48.5 is installed
  • OR openstack-nova-serialproxy-16.1.9~dev92-3.48.5 is installed
  • OR openstack-nova-vncproxy-16.1.9~dev92-3.48.5 is installed
  • OR python-Django-1.11.29-3.25.3 is installed
  • OR python-elementpath-1.3.1-1.3.2 is installed
  • OR python-eventlet-0.20.0-6.3.3 is installed
  • OR python-nova-16.1.9~dev92-3.48.5 is installed
  • OR python-py-1.4.34-3.3.3 is installed
  • OR python-pysaml2-4.0.2-5.9.2 is installed
  • OR python-xmlschema-1.0.18-1.3.3 is installed
  • OR venv-openstack-aodh-x86_64-5.1.1~dev7-12.32.3 is installed
  • OR venv-openstack-barbican-x86_64-5.0.2~dev3-12.33.3 is installed
  • OR venv-openstack-ceilometer-x86_64-9.0.8~dev7-12.30.3 is installed
  • OR venv-openstack-cinder-x86_64-11.2.3~dev29-14.34.2 is installed
  • OR venv-openstack-designate-x86_64-5.0.3~dev7-12.31.3 is installed
  • OR venv-openstack-freezer-x86_64-5.0.0.0~xrc2~dev2-10.28.3 is installed
  • OR venv-openstack-glance-x86_64-15.0.3~dev3-12.31.3 is installed
  • OR venv-openstack-heat-x86_64-9.0.8~dev22-12.33.2 is installed
  • OR venv-openstack-horizon-x86_64-12.0.5~dev6-14.36.6 is installed
  • OR venv-openstack-ironic-x86_64-9.1.8~dev8-12.33.3 is installed
  • OR venv-openstack-keystone-x86_64-12.0.4~dev11-11.35.3 is installed
  • OR venv-openstack-magnum-x86_64-5.0.2_5.0.2_5.0.2~dev31-11.32.2 is installed
  • OR venv-openstack-manila-x86_64-5.1.1~dev5-12.37.3 is installed
  • OR venv-openstack-monasca-ceilometer-x86_64-1.5.1_1.5.1_1.5.1~dev3-8.28.3 is installed
  • OR venv-openstack-monasca-x86_64-2.2.2~dev1-11.28.3 is installed
  • OR venv-openstack-murano-x86_64-4.0.2~dev2-12.28.3 is installed
  • OR venv-openstack-neutron-x86_64-11.0.9~dev69-13.38.3 is installed
  • OR venv-openstack-nova-x86_64-16.1.9~dev92-11.36.3 is installed
  • OR venv-openstack-octavia-x86_64-1.0.6~dev3-12.33.3 is installed
  • OR venv-openstack-sahara-x86_64-7.0.5~dev4-11.32.3 is installed
  • OR venv-openstack-swift-x86_64-2.15.2_2.15.2_2.15.2~dev32-11.23.3 is installed
  • OR venv-openstack-trove-x86_64-8.0.2~dev2-11.32.3 is installed
  • OR Package Information
  • SUSE OpenStack Cloud Crowbar 8 is installed
  • AND
  • cassandra-3.11.10-5.3.5 is installed
  • OR cassandra-tools-3.11.10-5.3.5 is installed
  • OR crowbar-core-5.0+git.1622489449.a8e60e238-3.50.4 is installed
  • OR crowbar-core-branding-upstream-5.0+git.1622489449.a8e60e238-3.50.4 is installed
  • OR crowbar-openstack-5.0+git.1616001417.67fd9c2a1-4.52.5 is installed
  • OR documentation-suse-openstack-cloud-deployment-8.20210512-1.32.5 is installed
  • OR documentation-suse-openstack-cloud-supplement-8.20210512-1.32.5 is installed
  • OR documentation-suse-openstack-cloud-upstream-admin-8.20210512-1.32.5 is installed
  • OR documentation-suse-openstack-cloud-upstream-user-8.20210512-1.32.5 is installed
  • OR grafana-6.7.4-4.18.2 is installed
  • OR kibana-4.6.6-3.9.2 is installed
  • OR openstack-heat-templates-0.0.0+git.1623056900.7917e18-3.21.3 is installed
  • OR openstack-monasca-installer-20190923_16.32-3.18.2 is installed
  • OR openstack-nova-16.1.9~dev92-3.48.5 is installed
  • OR openstack-nova-api-16.1.9~dev92-3.48.5 is installed
  • OR openstack-nova-cells-16.1.9~dev92-3.48.5 is installed
  • OR openstack-nova-compute-16.1.9~dev92-3.48.5 is installed
  • OR openstack-nova-conductor-16.1.9~dev92-3.48.5 is installed
  • OR openstack-nova-console-16.1.9~dev92-3.48.5 is installed
  • OR openstack-nova-consoleauth-16.1.9~dev92-3.48.5 is installed
  • OR openstack-nova-doc-16.1.9~dev92-3.48.5 is installed
  • OR openstack-nova-novncproxy-16.1.9~dev92-3.48.5 is installed
  • OR openstack-nova-placement-api-16.1.9~dev92-3.48.5 is installed
  • OR openstack-nova-scheduler-16.1.9~dev92-3.48.5 is installed
  • OR openstack-nova-serialproxy-16.1.9~dev92-3.48.5 is installed
  • OR openstack-nova-vncproxy-16.1.9~dev92-3.48.5 is installed
  • OR python-Django-1.11.29-3.25.3 is installed
  • OR python-elementpath-1.3.1-1.3.2 is installed
  • OR python-eventlet-0.20.0-6.3.3 is installed
  • OR python-nova-16.1.9~dev92-3.48.5 is installed
  • OR python-py-1.4.34-3.3.3 is installed
  • OR python-pysaml2-4.0.2-5.9.2 is installed
  • OR python-xmlschema-1.0.18-1.3.3 is installed
  • OR ruby2.1-rubygem-activerecord-session_store-0.1.2-3.3.2 is installed
  • Definition Synopsis
  • Release Information
  • SUSE OpenStack Cloud 9 is installed
  • AND
  • ardana-neutron-9.0+git.1615223676.777f0b3-3.25.2 is installed
  • OR ardana-swift-9.0+git.1618235096.90974ed-3.10.2 is installed
  • OR cassandra-3.11.10-3.3.3 is installed
  • OR cassandra-tools-3.11.10-3.3.3 is installed
  • OR grafana-6.7.4-3.23.2 is installed
  • OR kibana-4.6.6-4.9.2 is installed
  • OR openstack-dashboard-14.1.1~dev11-3.24.6 is installed
  • OR openstack-ironic-11.1.5~dev17-3.25.5 is installed
  • OR openstack-ironic-api-11.1.5~dev17-3.25.5 is installed
  • OR openstack-ironic-conductor-11.1.5~dev17-3.25.5 is installed
  • OR openstack-neutron-13.0.8~dev164-3.37.4 is installed
  • OR openstack-neutron-dhcp-agent-13.0.8~dev164-3.37.4 is installed
  • OR openstack-neutron-gbp-12.0.1~dev29-3.25.3 is installed
  • OR openstack-neutron-ha-tool-13.0.8~dev164-3.37.4 is installed
  • OR openstack-neutron-l3-agent-13.0.8~dev164-3.37.4 is installed
  • OR openstack-neutron-linuxbridge-agent-13.0.8~dev164-3.37.4 is installed
  • OR openstack-neutron-macvtap-agent-13.0.8~dev164-3.37.4 is installed
  • OR openstack-neutron-metadata-agent-13.0.8~dev164-3.37.4 is installed
  • OR openstack-neutron-metering-agent-13.0.8~dev164-3.37.4 is installed
  • OR openstack-neutron-openvswitch-agent-13.0.8~dev164-3.37.4 is installed
  • OR openstack-neutron-server-13.0.8~dev164-3.37.4 is installed
  • OR openstack-nova-18.3.1~dev82-3.37.6 is installed
  • OR openstack-nova-api-18.3.1~dev82-3.37.6 is installed
  • OR openstack-nova-cells-18.3.1~dev82-3.37.6 is installed
  • OR openstack-nova-compute-18.3.1~dev82-3.37.6 is installed
  • OR openstack-nova-conductor-18.3.1~dev82-3.37.6 is installed
  • OR openstack-nova-console-18.3.1~dev82-3.37.6 is installed
  • OR openstack-nova-novncproxy-18.3.1~dev82-3.37.6 is installed
  • OR openstack-nova-placement-api-18.3.1~dev82-3.37.6 is installed
  • OR openstack-nova-scheduler-18.3.1~dev82-3.37.6 is installed
  • OR openstack-nova-serialproxy-18.3.1~dev82-3.37.6 is installed
  • OR openstack-nova-vncproxy-18.3.1~dev82-3.37.6 is installed
  • OR python-Django1-1.11.29-3.25.1 is installed
  • OR python-elementpath-1.3.1-1.3.2 is installed
  • OR python-horizon-14.1.1~dev11-3.24.6 is installed
  • OR python-ironic-11.1.5~dev17-3.25.5 is installed
  • OR python-neutron-13.0.8~dev164-3.37.4 is installed
  • OR python-neutron-gbp-12.0.1~dev29-3.25.3 is installed
  • OR python-nova-18.3.1~dev82-3.37.6 is installed
  • OR python-openstack_auth-14.1.1~dev11-3.24.6 is installed
  • OR python-py-1.5.4-3.3.2 is installed
  • OR python-pysaml2-4.5.0-4.6.2 is installed
  • OR python-xmlschema-1.0.18-1.3.2 is installed
  • OR venv-openstack-barbican-x86_64-7.0.1~dev24-3.23.1 is installed
  • OR venv-openstack-cinder-x86_64-13.0.10~dev20-3.26.1 is installed
  • OR venv-openstack-designate-x86_64-7.0.2~dev2-3.23.1 is installed
  • OR venv-openstack-glance-x86_64-17.0.1~dev30-3.21.1 is installed
  • OR venv-openstack-heat-x86_64-11.0.4~dev4-3.23.1 is installed
  • OR venv-openstack-horizon-x86_64-14.1.1~dev11-4.27.3 is installed
  • OR venv-openstack-ironic-x86_64-11.1.5~dev17-4.21.2 is installed
  • OR venv-openstack-keystone-x86_64-14.2.1~dev4-3.24.3 is installed
  • OR venv-openstack-magnum-x86_64-7.2.1~dev1-4.23.1 is installed
  • OR venv-openstack-manila-x86_64-7.4.2~dev60-3.29.1 is installed
  • OR venv-openstack-monasca-ceilometer-x86_64-1.8.2~dev3-3.23.2 is installed
  • OR venv-openstack-monasca-x86_64-2.7.1~dev10-3.21.1 is installed
  • OR venv-openstack-neutron-x86_64-13.0.8~dev164-6.27.3 is installed
  • OR venv-openstack-nova-x86_64-18.3.1~dev82-3.27.3 is installed
  • OR venv-openstack-octavia-x86_64-3.2.3~dev7-4.23.1 is installed
  • OR venv-openstack-sahara-x86_64-9.0.2~dev15-3.23.1 is installed
  • OR venv-openstack-swift-x86_64-2.19.2~dev48-2.18.1 is installed
  • OR Package Information
  • SUSE OpenStack Cloud Crowbar 9 is installed
  • AND
  • cassandra-3.11.10-3.3.3 is installed
  • OR cassandra-tools-3.11.10-3.3.3 is installed
  • OR crowbar-openstack-6.0+git.1616146717.a89ae0f4e-3.34.4 is installed
  • OR grafana-6.7.4-3.23.2 is installed
  • OR kibana-4.6.6-4.9.2 is installed
  • OR openstack-dashboard-14.1.1~dev11-3.24.6 is installed
  • OR openstack-ironic-11.1.5~dev17-3.25.5 is installed
  • OR openstack-ironic-api-11.1.5~dev17-3.25.5 is installed
  • OR openstack-ironic-conductor-11.1.5~dev17-3.25.5 is installed
  • OR openstack-neutron-13.0.8~dev164-3.37.4 is installed
  • OR openstack-neutron-dhcp-agent-13.0.8~dev164-3.37.4 is installed
  • OR openstack-neutron-gbp-12.0.1~dev29-3.25.3 is installed
  • OR openstack-neutron-ha-tool-13.0.8~dev164-3.37.4 is installed
  • OR openstack-neutron-l3-agent-13.0.8~dev164-3.37.4 is installed
  • OR openstack-neutron-linuxbridge-agent-13.0.8~dev164-3.37.4 is installed
  • OR openstack-neutron-macvtap-agent-13.0.8~dev164-3.37.4 is installed
  • OR openstack-neutron-metadata-agent-13.0.8~dev164-3.37.4 is installed
  • OR openstack-neutron-metering-agent-13.0.8~dev164-3.37.4 is installed
  • OR openstack-neutron-openvswitch-agent-13.0.8~dev164-3.37.4 is installed
  • OR openstack-neutron-server-13.0.8~dev164-3.37.4 is installed
  • OR openstack-nova-18.3.1~dev82-3.37.6 is installed
  • OR openstack-nova-api-18.3.1~dev82-3.37.6 is installed
  • OR openstack-nova-cells-18.3.1~dev82-3.37.6 is installed
  • OR openstack-nova-compute-18.3.1~dev82-3.37.6 is installed
  • OR openstack-nova-conductor-18.3.1~dev82-3.37.6 is installed
  • OR openstack-nova-console-18.3.1~dev82-3.37.6 is installed
  • OR openstack-nova-novncproxy-18.3.1~dev82-3.37.6 is installed
  • OR openstack-nova-placement-api-18.3.1~dev82-3.37.6 is installed
  • OR openstack-nova-scheduler-18.3.1~dev82-3.37.6 is installed
  • OR openstack-nova-serialproxy-18.3.1~dev82-3.37.6 is installed
  • OR openstack-nova-vncproxy-18.3.1~dev82-3.37.6 is installed
  • OR python-Django1-1.11.29-3.25.1 is installed
  • OR python-elementpath-1.3.1-1.3.2 is installed
  • OR python-horizon-14.1.1~dev11-3.24.6 is installed
  • OR python-ironic-11.1.5~dev17-3.25.5 is installed
  • OR python-neutron-13.0.8~dev164-3.37.4 is installed
  • OR python-neutron-gbp-12.0.1~dev29-3.25.3 is installed
  • OR python-nova-18.3.1~dev82-3.37.6 is installed
  • OR python-openstack_auth-14.1.1~dev11-3.24.6 is installed
  • OR python-py-1.5.4-3.3.2 is installed
  • OR python-pysaml2-4.5.0-4.6.2 is installed
  • OR python-xmlschema-1.0.18-1.3.2 is installed
  • OR ruby2.1-rubygem-activerecord-session_store-0.1.2-4.3.2 is installed
  • BACK