Safety vulnerability ID: 66950
The information on this page was manually curated by our Cybersecurity Intelligence Team.
Tripleo-ansible is affected by CVE-2023-6725: An access-control flaw was found in the OpenStack Designate component where private configuration information including access keys to BIND were improperly made world readable. A malicious attacker with access to any container could exploit this flaw to access sensitive information.
Latest version: 6.0.0
Ansible assets for the TripleO project.
An access-control flaw was found in the OpenStack Designate component where private configuration information including access keys to BIND were improperly made world readable. A malicious attacker with access to any container could exploit this flaw to access sensitive information. See CVE-2023-6725.
MISC:RHBZ#2249273: https://bugzilla.redhat.com/show_bug.cgi?id=2249273
MISC:https://access.redhat.com/security/cve/CVE-2023-6725: https://access.redhat.com/security/cve/CVE-2023-6725
Scan your Python project for dependency vulnerabilities in two minutes
Scan your application