Ubuntu Security Notice USN-1552-1

newsbot

newsbot

RSS Feed
Ubuntu Security Notice 1552-1 - Dolph Mathews discovered that OpenStack Keystone did not properly restrict to administrative users the ability to update users' tenants. A remote attacker that can reach the administrative API can use this to add any user to any tenant. Derek Higgins discovered that OpenStack Keystone did not properly implement token expiration. A remote attacker could use this to continue to access an account that has been disabled or has a changed password. Various other issues were also addressed.

Weiterlesen...
 

Ähnliche Themen

Zugriff Ubuntu 16.04. auf Freigabe 18.04. LTS nicht möglich

Ubuntu Security Notice USN-1641-1

Ubuntu Security Notice USN-1680-1

Ubuntu Security Notice USN-1680-1

Ubuntu Security Notice USN-1583-1

Zurück
Oben