CVE Vulnerabilities

CVE-2023-6110

Improper Handling of Structural Elements

Published: Nov 17, 2024 | Modified: Dec 05, 2024
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
5.5 MODERATE
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:L
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

A flaw was found in OpenStack. When a user tries to delete a non-existing access rule in its scope, it deletes other existing access rules which are not associated with any application credentials.

Weakness

The product does not handle or incorrectly handles inputs that are related to complex structures.

Affected Software

NameVendorStart VersionEnd Version
Red Hat OpenStack Platform 17.1 for RHEL 8RedHatpython-openstackclient-0:5.5.2-17.1.20230829213816.el8ost*
Red Hat OpenStack Platform 17.1 for RHEL 9RedHatpython-openstackclient-0:5.5.2-17.1.20230829210830.el9ost*
Python-openstackclientUbuntubionic*
Python-openstackclientUbuntuesm-infra/focal*
Python-openstackclientUbuntufocal*
Python-openstackclientUbuntujammy*
Python-openstackclientUbuntutrusty*
Python-openstackclientUbuntuxenial*

References