VendorsSUSEopenstack_cloud8.0
Vulnerabilities

SUSE Openstack Cloud 8.0

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

5CVEs
CVE-2018-17954
crowbar provision leaks admin password to all nodes in cleartext
Published 2020-04-03 · Modified
9.3EPSS 0.003
CVE-2019-3683
keystone_json_assignment backend granted access to any project for users in user-project-map.json
Published 2020-01-17 · Modified
8.8EPSS 0.009
CVE-2020-8022
User-writeable configuration file /usr/lib/tmpfiles.d/tomcat.conf allows for escalation of priviliges
Published 2020-06-29 · Modified
7.8EPSS 0.009
CVE-2022-27239
In cifs-utils through 6.14, a stack-based buffer overflow when parsing the mount.cifs ip= command-line argument could lead to local attackers gaining root privileges.
Published 2022-04-27 · Modified
7.8EPSS 0.006
CVE-2020-8023
Local privilege escalation from ldap to root when using OPENLDAP_CONFIG_BACKEND=ldap in openldap2
Published 2020-09-01 · Modified
7.8EPSS 0.004