Vulnerabilities > CVE-2023-1625
Attack vector
NETWORK Attack complexity
LOW Privileges required
LOW Confidentiality impact
LOW Integrity impact
NONE Availability impact
NONE Summary
An information leak was discovered in OpenStack heat. This issue could allow a remote, authenticated attacker to use the 'stack show' command to reveal parameters which are supposed to remain hidden. This has a low impact to the confidentiality, integrity, and availability of the system.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 | |
Application | 4 |
References
- https://access.redhat.com/security/cve/CVE-2023-1625
- https://access.redhat.com/security/cve/CVE-2023-1625
- https://bugzilla.redhat.com/show_bug.cgi?id=2181621
- https://bugzilla.redhat.com/show_bug.cgi?id=2181621
- https://github.com/openstack/heat/commit/a49526c278e52823080c7f3fcb72785b93fd4dcb
- https://github.com/openstack/heat/commit/a49526c278e52823080c7f3fcb72785b93fd4dcb
- https://launchpad.net/bugs/1999665
- https://launchpad.net/bugs/1999665