First published: Wed May 10 2023(Updated: )
It was discovered that OpenStack Heat incorrectly handled certain hidden parameter values. A remote authenticated user could possibly use this issue to obtain sensitive data.
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
ubuntu/python3-heat | <1:14.2.0-0ubuntu1.1 | 1:14.2.0-0ubuntu1.1 |
Ubuntu Linux | =20.04 | |
All of | ||
ubuntu/python-heat | <1:10.0.2-0ubuntu1.1 | 1:10.0.2-0ubuntu1.1 |
Ubuntu Linux | =18.04 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID of this advisory is USN-6066-1.
The title of this advisory is USN-6066-1: OpenStack Heat vulnerability.
The vulnerability involves OpenStack Heat incorrectly handling certain hidden parameter values, which can be exploited by a remote authenticated user to obtain sensitive data.
The affected software is Python3 Heat version 1:14.2.0-0ubuntu1.1 on Ubuntu 20.04 and Python Heat version 1:10.0.2-0ubuntu1.1 on Ubuntu 18.04.
Yes, the fix for this vulnerability is included in the following package versions: Python3 Heat 1:14.2.0-0ubuntu1.1 for Ubuntu 20.04 and Python Heat 1:10.0.2-0ubuntu1.1 for Ubuntu 18.04.