CVE-2019-17134
Severity CVSS v4.0:
Pending analysis
Type:
CWE-287
Authentication Issues
Publication date:
08/10/2019
Last modified:
07/11/2023
Description
Amphora Images in OpenStack Octavia >=0.10.0 =3.0.0 =4.0.0
Impact
Base Score 3.x
9.10
Severity 3.x
CRITICAL
Base Score 2.0
6.40
Severity 2.0
MEDIUM
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:a:opendev:octavia:*:*:*:*:*:openstack:*:* | 0.10.0 (including) | 2.1.2 (excluding) |
cpe:2.3:a:opendev:octavia:*:*:*:*:*:openstack:*:* | 3.0.0 (including) | 3.2.0 (excluding) |
cpe:2.3:a:opendev:octavia:*:*:*:*:*:openstack:*:* | 4.0.0 (including) | 4.1.0 (excluding) |
cpe:2.3:o:canonical:ubuntu_linux:19.04:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- https://access.redhat.com/errata/RHSA-2019:3743
- https://access.redhat.com/errata/RHSA-2019:3788
- https://access.redhat.com/errata/RHSA-2020:0721
- https://review.opendev.org/686541
- https://review.opendev.org/686543
- https://review.opendev.org/686544
- https://review.opendev.org/686545
- https://review.opendev.org/686546
- https://review.opendev.org/686547
- https://security.openstack.org/ossa/OSSA-2019-005.html
- https://storyboard.openstack.org/#%21/story/2006660
- https://usn.ubuntu.com/4153-1/