CVE Vulnerabilities

CVE-2023-6110

Improper Handling of Structural Elements

Published: Nov 17, 2024 | Modified: Dec 05, 2024
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
5.5 MODERATE
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:L
Ubuntu
MEDIUM

A flaw was found in OpenStack. When a user tries to delete a non-existing access rule in its scope, it deletes other existing access rules which are not associated with any application credentials.

Weakness

The product does not handle or incorrectly handles inputs that are related to complex structures.

Affected Software

Name Vendor Start Version End Version
Red Hat OpenStack Platform 17.1 for RHEL 8 RedHat python-openstackclient-0:5.5.2-17.1.20230829213816.el8ost *
Red Hat OpenStack Platform 17.1 for RHEL 9 RedHat python-openstackclient-0:5.5.2-17.1.20230829210830.el9ost *
Python-openstackclient Ubuntu bionic *
Python-openstackclient Ubuntu focal *
Python-openstackclient Ubuntu jammy *
Python-openstackclient Ubuntu trusty *
Python-openstackclient Ubuntu xenial *

References