CVE-2014-0204

EPSS 0.35%

OpenStack Identity Keystone Improper Privilege Management

發布日:2022/5/13修改日:2026/4/28

描述

OpenStack Identity (Keystone) before 2014.1.1 does not properly handle when a role is assigned to a group that has the same ID as a user, which allows remote authenticated users to gain privileges that are assigned to a group with the same ID.

受影響套件(2)

參考連結(9)