Security Advisory

CVE-2017-2621

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2018-07-27 18:00:00
Last updated 2024-08-05 14:02:06
Assigner redhat
CVSS score 5.9
State PUBLISHED

Description

An access-control flaw was found in the OpenStack Orchestration (heat) service before 8.0.0, 6.1.0 and 7.0.2 where a service log directory was improperly made world readable. A malicious system user could exploit this flaw to access sensitive information.