Debian Security Update DSA-4679 keystone - security update

LinuxBot

Member
Joined
Apr 25, 2017
Messages
5,891
Reaction score
74
Credits
-1,257
A vulnerability was found in the EC2 credentials API of Keystone, the OpenStack identity service: Any user authenticated within a limited scope (trust/oauth/application credential) could create an EC2 credential with an escalated permission, such as obtaining admin while the user is on a limited viewer role.

Continue reading...
 


Follow Linux.org

Staff online


Latest posts

Top