CVE-2023-6110
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
17/11/2024
Last modified:
05/12/2024
Description
A flaw was found in OpenStack. When a user tries to delete a non-existing access rule in it's scope, it deletes other existing access rules which are not associated with any application credentials.
Impact
Base Score 3.x
5.50
Severity 3.x
MEDIUM
References to Advisories, Solutions, and Tools
- https://access.redhat.com/errata/RHSA-2024:2737
- https://access.redhat.com/errata/RHSA-2024:2769
- https://access.redhat.com/security/cve/CVE-2023-6110
- https://bugzilla.redhat.com/show_bug.cgi?id=2212960
- https://code.engineering.redhat.com/gerrit/gitweb?p=python-openstackclient.git%3Ba%3Dcommit%3Bh%3D7a7c364bdd7b2cd2b56e73724110710a68d58abf
- https://review.opendev.org/c/openstack/python-openstackclient/+/888697



