CVE-2012-4456
The (1) OS-KSADM/services and (2) tenant APIs in OpenStack Keystone Essex before 2012.1.2 and Folsom before folsom-2 do not properly validate X-Auth-Token, which allow remote attackers to read the roles for an arbitrary user or get, create, or delete…
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (4.00%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
The (1) OS-KSADM/services and (2) tenant APIs in OpenStack Keystone Essex before 2012.1.2 and Folsom before folsom-2 do not properly validate X-Auth-Token, which allow remote attackers to read the roles for an arbitrary user or get, create, or delete arbitrary services.
- CVSS 2.0
- 7.5 HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
- EPSS
- 4.00% probability · 90th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-287
- Affected
- openstack/keystone
- Source
- secalert@redhat.com
References
- http://secunia.com/advisories/50665Third Party Advisory, Vendor Advisory
- http://www.openwall.com/lists/oss-security/2012/09/28/5Mailing List, Patch, Third Party Advisory
- http://www.securityfocus.com/bid/55716Third Party Advisory, VDB Entry
- https://bugs.launchpad.net/keystone/+bug/1006815Third Party Advisory
- https://bugs.launchpad.net/keystone/+bug/1006822Patch, Third Party Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=861179Issue Tracking, Third Party Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/78944Third Party Advisory, VDB Entry
- https://github.com/openstack/keystone/commit/14b136aed9d988f5a8f3e699bd4577c9b874d6c1Third Party Advisory
- https://github.com/openstack/keystone/commit/1d146f5c32e58a73a677d308370f147a3271c2cbThird Party Advisory
- https://github.com/openstack/keystone/commit/24df3adb3f50cbb5ada411bc67aba8a781e6a431Third Party Advisory
- https://github.com/openstack/keystone/commit/868054992faa45d6f42d822bf1588cb88d7c9ccbThird Party Advisory
- https://lists.launchpad.net/openstack/msg17034.htmlPatch, Third Party Advisory
- http://secunia.com/advisories/50665Third Party Advisory, Vendor Advisory
- http://www.openwall.com/lists/oss-security/2012/09/28/5Mailing List, Patch, Third Party Advisory
- http://www.securityfocus.com/bid/55716Third Party Advisory, VDB Entry
- https://bugs.launchpad.net/keystone/+bug/1006815Third Party Advisory
- https://bugs.launchpad.net/keystone/+bug/1006822Patch, Third Party Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=861179Issue Tracking, Third Party Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/78944Third Party Advisory, VDB Entry
- https://github.com/openstack/keystone/commit/14b136aed9d988f5a8f3e699bd4577c9b874d6c1Third Party Advisory
- https://github.com/openstack/keystone/commit/1d146f5c32e58a73a677d308370f147a3271c2cbThird Party Advisory
- https://github.com/openstack/keystone/commit/24df3adb3f50cbb5ada411bc67aba8a781e6a431Third Party Advisory
- https://github.com/openstack/keystone/commit/868054992faa45d6f42d822bf1588cb88d7c9ccbThird Party Advisory
- https://lists.launchpad.net/openstack/msg17034.htmlPatch, Third Party Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.