First published: Wed Dec 21 2022(Updated: )
A privilege escalation vulnerability exists in the oslo.privsep functionality of OpenStack git master 05194e7618 and prior. Overly permissive functionality within tools leveraging this library within a container can lead increased privileges.
Credit: talos-cna@cisco.com talos-cna@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Redhat Openstack |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this privilege escalation vulnerability is CVE-2022-38065.
CVE-2022-38065 has a severity rating of 8.8, which is considered high.
The affected software for CVE-2022-38065 is Redhat Openstack.
The CWE ID for this vulnerability is 269.
To fix the privilege escalation vulnerability CVE-2022-38065, it is recommended to update to a version of OpenStack that includes the fix for this issue.