A vulnerability was found in OpenStack Barbican containers. This vulnerability is only applicable to deployments that utilize an all-in-one configuration. Barbican containers share the same CGROUP, USER, and NET namespace with the host system and other OpenStack services. If any service is compromised, it could gain access to the data transmitted to and from Barbican.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-2450 | A vulnerability was found in OpenStack Barbican containers. This vulnerability is only applicable to deployments that utilize an all-in-one configuration. Barbican containers share the same CGROUP, USER, and NET namespace with the host system and other OpenStack services. If any service is compromised, it could gain access to the data transmitted to and from Barbican. |
Github GHSA |
GHSA-6rx9-c2rh-3qv4 | OpenStack Barbican information disclosure vulnerability |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Wed, 25 Sep 2024 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-09-24T15:00:07.823Z
Reserved: 2023-03-25T18:18:19.615Z
Link: CVE-2023-1636
Updated: 2024-08-02T05:57:24.831Z
Status : Modified
Published: 2023-09-24T01:15:43.920
Modified: 2024-11-21T07:39:35.777
Link: CVE-2023-1636
OpenCVE Enrichment
No data.
EUVD
Github GHSA