OpenStack Keystone V3 API Authentication Denial of Service Vulnerability
BID:66736
Info
OpenStack Keystone V3 API Authentication Denial of Service Vulnerability
| Bugtraq ID: | 66736 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: |
CVE-2014-2828 |
| Remote: | Yes |
| Local: | No |
| Published: | Mar 31 2014 12:00AM |
| Updated: | Apr 13 2015 09:48PM |
| Credit: | Abu Shohel Ahmed from Ericsson |
| Vulnerable: |
Oracle Solaris 11.2 OpenStack Keystone 2013.2.3 OpenStack Keystone 2013.1 IBM SmartCloud Orchestrator 2.3 FP1 IBM SmartCloud Orchestrator 2.3 IBM PowerVC Standard Edition 1.2.0.2 IBM PowerVC Standard Edition 1.2.0.1 IBM PowerVC Standard Edition 1.2.0.0 IBM PowerVC Express Edition 1.2.0.2 IBM PowerVC Express Edition 1.2.0.1 IBM PowerVC Express Edition 1.2.0.0 |
| Not Vulnerable: |
IBM SmartCloud Orchestrator 2.3 FP1 iFix4 |
Solution / Fix
OpenStack Keystone V3 API Authentication Denial of Service Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.