ossa/ossa/OSSA-2013-010.yaml

68 lines
1.6 KiB
YAML

date: 2013-05-09
id: OSSA-2013-010
title: 'Nova uses insecure keystone middleware tmpdir by default'
description: 'Grant Murphy from Red Hat and Anton Lundin both independently reported
a vulnerability in Nova''s default location for the Keystone middleware signing
directory (signing_dir). By previously setting up a malicious directory structure,
an attacker with local shell access on the Nova node could potentially issue forged
tokens that would be accepted by the middleware. Only setups that use the default
value for signing_dir are affected. Note that future versions of the Keystone middleware
will issue a warning if an insecure signing directory is used. '
reference: http://lists.openstack.org/pipermail/openstack-announce/2013-May/000098.html
affected-products:
- product: nova
version: Folsom, Grizzly
vulnerabilities:
- cve-id: CVE-2013-2030
impact-assessment:
source: 'Red Hat Product Security'
rating: low
assessment:
type: CVSS2
score: 2.1
detail: AV:L/AC:L/Au:N/C:N/I:P/A:N
classification:
source: 'Red Hat Product Security'
type: CWE
detail: TODO
reporters:
- name: 'Grant Murphy'
affiliation: 'Red Hat'
reported:
- CVE-2013-2030
- name: 'Anton Lundin'
affiliation: UNKNOWN
reported:
- CVE-2013-2030
issues:
links:
- https://launchpad.net/bugs/1174608
type: launchpad
reviews:
havana:
- https://review.openstack.org/#/c/28568
grizzly:
- https://review.openstack.org/#/c/28569
folsom:
- https://review.openstack.org/#/c/28570
type: gerrit