Vulnerabilities > CVE-2014-0040 - Unspecified vulnerability in Redhat Openstack 4.0

047910
CVSS 0.0 - NONE
Attack vector
UNKNOWN
Attack complexity
UNKNOWN
Privileges required
UNKNOWN
Confidentiality impact
UNKNOWN
Integrity impact
UNKNOWN
Availability impact
UNKNOWN

Summary

OpenStack Heat Templates (heat-templates), as used in Red Hat Enterprise Linux OpenStack Platform 4.0, uses an HTTP connection to download (1) packages and (2) signing keys from Yum repositories, which allows man-in-the-middle attackers to prevent updates via unspecified vectors.

Vulnerable Configurations

Part Description Count
Application
Redhat
1

Redhat

advisories
rhsa
idRHSA-2014:0579
rpmsopenstack-heat-templates-0:0-0.3.20140407git.el6ost