stable

openstack-keystone-2012.1.2-4.el6

FEDORA-EPEL-2012-12782 created by apevec 13 years ago for Fedora EPEL 6
  • Require authz to update user's tenant (CVE-2012-3542)
  • Delete user tokens after role grant/revoke (CVE-2012-4413)
  • Fails to validate tokens in Admin API (CVE-2012-4456)
  • Fails to raise Unauthorized user error for disabled tenant (CVE-2012-4457)

This update has been submitted for testing by apevec.

13 years ago

This update is currently being pushed to the Fedora EPEL 6 testing updates repository.

13 years ago

This update has been pushed to testing

13 years ago

apevec has edited this update. New build(s): openstack-keystone-2012.1.2-3.el6. Removed build(s): openstack-keystone-2012.1.2-2.el6.

13 years ago

This update has been submitted for testing by apevec.

13 years ago

This update is currently being pushed to the Fedora EPEL 6 testing updates repository.

13 years ago

This update has been pushed to testing

13 years ago

apevec has edited this update. New build(s): openstack-keystone-2012.1.2-4.el6. Removed build(s): openstack-keystone-2012.1.2-3.el6.

13 years ago

This update has been submitted for testing by apevec.

13 years ago

This update is currently being pushed to the Fedora EPEL 6 testing updates repository.

13 years ago

This update has been pushed to testing

13 years ago

This update has reached 14 days in testing and can be pushed to stable now if the maintainer wishes

13 years ago

This update has been submitted for stable by apevec.

13 years ago

This update is currently being pushed to the Fedora EPEL 6 stable updates repository.

13 years ago

This update has been pushed to stable

13 years ago

Please log in to add feedback.

Metadata
Type
security
Karma
0
Signed
Content Type
RPM
Test Gating
Autopush Settings
Unstable by Karma
-3
Stable by Karma
disabled
Stable by Time
disabled
Dates
submitted
13 years ago
in testing
13 years ago
in stable
13 years ago
modified
13 years ago
BZ#853245 CVE-2012-3542 OpenStack Keystone: Lack of authorization for adding users to tenants [epel-6]
0
0
BZ#856720 CVE-2012-4413 OpenStack-Keystone: role revocation token issues [epel-6]
0
0
BZ#861183 CVE-2012-4456 CVE-2012-4457 openstack-keystone various flaws [epel-6]
0
0

Automated Test Results