OpenStack Oslo

CPE Details

OpenStack Oslo
-
2014-08-20
14h28 +00:00
2014-08-27
22h44 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:openstack:oslo:-:*:*:*:*:*:*:*

Informations

Vendor

openstack

Product

oslo

Version

-

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2014-4615 2014-08-19 16h00 +00:00 The notifier middleware in OpenStack PyCADF 0.5.0 and earlier, Telemetry (Ceilometer) 2013.2 before 2013.2.4 and 2014.x before 2014.1.2, Neutron 2014.x before 2014.1.2 and Juno before Juno-2, and Oslo allows remote authenticated users to obtain X_AUTH_TOKEN values by reading the message queue (v2/meters/http.request).
5
CVE-2013-6491 2014-02-01 23h00 +00:00 The python-qpid client (common/rpc/impl_qpid.py) in OpenStack Oslo before 2013.2 does not enforce SSL connections when qpid_protocol is set to ssl, which allows remote attackers to obtain sensitive information by sniffing the network.
4.3