Security Advisory

CVE-2014-0164

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2014-05-05 17:00:00
Last updated 2024-08-06 09:05:39
Assigner redhat
CVSS score not scored
State PUBLISHED

Description

openshift-origin-broker-util, as used in Red Hat OpenShift Enterprise 1.2.7 and 2.0.5, uses world-readable permissions for the mcollective client.cfg configuration file, which allows local users to obtain credentials and other sensitive information by reading the file.