An information leak was found in OpenStack's undercloud. This flaw allows unauthenticated, remote attackers to inspect sensitive data after discovering the IP address of the undercloud, possibly leading to compromising private information, including administrator access credentials.
References
Link | Resource |
---|---|
https://access.redhat.com/errata/RHSA-2022:8897 | Vendor Advisory |
https://access.redhat.com/security/cve/CVE-2022-3596 | Mitigation Vendor Advisory |
https://bugzilla.redhat.com/show_bug.cgi?id=2136596 | Issue Tracking Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
03 May 2024, 16:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-09-20 20:15
Updated : 2024-05-03 16:15
NVD link : CVE-2022-3596
Mitre link : CVE-2022-3596
CVE.ORG link : CVE-2022-3596
JSON object : View
Products Affected
redhat
- openstack_platform
CWE