CVE Published: 15/03/2024 |
CVE Updated: 24/11/2024 |
CVE Year: 2023 Source: redhat |
Vendor: Red Hat |
Product: Red Hat OpenStack Platform 17.1 for RHEL 8 Status : PUBLISHED
CVE-2023-6725 Description
An access-control flaw was found in the OpenStack Designate component where private configuration information including access keys to BIND were improperly made world readable. A malicious attacker with access to any container could exploit this flaw to access sensitive information.