https://seclists.org/oss-sec/2024/q1/228: OSSN-0093: [OpenStack Murano] Unsafe Environment Handling in MuranoPL
Published Mar 14, 2024
·Updated
Affected Software
1 affected component
Openstack Murano
Frequently Asked Questions
1
What is the severity of OSSN-0093?
The severity of OSSN-0093 is considered high due to unsafe handling of environment variables in MuranoPL.
2
How do I fix OSSN-0093?
To fix OSSN-0093, you should update OpenStack Murano to the latest patched version that addresses the vulnerability.
3
What vulnerabilities does OSSN-0093 exploit?
OSSN-0093 exploits unsafe environment handling, which can lead to potential command injection or data exposure.
4
Which versions of OpenStack are affected by OSSN-0093?
OSSN-0093 affects multiple versions of OpenStack Murano prior to the latest security patch release.
5
What is the impact of OSSN-0093 on my system?
The impact of OSSN-0093 on your system includes the risk of unauthorized access and execution of arbitrary commands.