Beveiligingsadvies

CVE-2016-9590

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2018-04-26 17:00:00
Laatst bijgewerkt 2024-08-06 02:59:02
Toegewezen door redhat
CVSS-score 6.5
Status PUBLISHED

Beschrijving

puppet-swift before versions 8.2.1, 9.4.4 is vulnerable to an information-disclosure in Red Hat OpenStack Platform director's installation of Object Storage (swift). During installation, the Puppet script responsible for deploying the service incorrectly removes and recreates the proxy-server.conf file with world-readable permissions.