FusionSphere OpenStack V100R006C00 has an information exposure vulnerability. The software uses hard-coded cryptographic key to encrypt messages between certain components, which significantly increases the possibility that encrypted data may be recovered and results in information exposure.
Advisories
Source ID Title
EUVD EUVD EUVD-2017-11863 FusionSphere OpenStack V100R006C00 has an information exposure vulnerability. The software uses hard-coded cryptographic key to encrypt messages between certain components, which significantly increases the possibility that encrypted data may be recovered and results in information exposure.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: huawei

Published:

Updated: 2024-09-16T18:28:20.258Z

Reserved: 2016-12-01T00:00:00

Link: CVE-2017-2720

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2017-11-22T19:29:01.350

Modified: 2025-04-20T01:37:25.860

Link: CVE-2017-2720

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.