Oval Definition:oval:org.opensuse.security:def:20213654
Revision Date:2022-05-22Version:1
Title:CVE-2021-3654
Description:

A vulnerability was found in openstack-nova's console proxy, noVNC. By crafting a malicious URL, noVNC could be made to redirect to any desired URL.
Family:unixClass:vulnerability
Status:Reference(s):Mitre CVE-2021-3654
SUSE CVE-2021-3654
Platform(s):SUSE OpenStack Cloud 8
SUSE OpenStack Cloud 9
SUSE OpenStack Cloud Crowbar 8
SUSE OpenStack Cloud Crowbar 9
Product(s):
Definition Synopsis
  • Release Information
  • SUSE OpenStack Cloud 8 is installed
  • OR SUSE OpenStack Cloud Crowbar 8 is installed
  • AND Package Information
  • openstack-nova is affected
  • OR openstack-nova-api is affected
  • OR openstack-nova-cells is affected
  • OR openstack-nova-compute is affected
  • OR openstack-nova-conductor is affected
  • OR openstack-nova-console is affected
  • OR openstack-nova-consoleauth is affected
  • OR openstack-nova-novncproxy is affected
  • OR openstack-nova-placement-api is affected
  • OR openstack-nova-scheduler is affected
  • OR openstack-nova-serialproxy is affected
  • OR openstack-nova-vncproxy is affected
  • OR python-nova is affected
  • Definition Synopsis
  • Release Information
  • SUSE OpenStack Cloud 9 is installed
  • OR SUSE OpenStack Cloud Crowbar 9 is installed
  • AND Package Information
  • openstack-nova is affected
  • OR openstack-nova-api is affected
  • OR openstack-nova-cells is affected
  • OR openstack-nova-compute is affected
  • OR openstack-nova-conductor is affected
  • OR openstack-nova-console is affected
  • OR openstack-nova-novncproxy is affected
  • OR openstack-nova-placement-api is affected
  • OR openstack-nova-scheduler is affected
  • OR openstack-nova-serialproxy is affected
  • OR openstack-nova-vncproxy is affected
  • OR python-nova is affected
  • BACK