CVE-2013-1977

Description

From CVE.org

OpenStack devstack uses world-readable permissions for keystone.conf, which allows local users to obtain sensitive information such as the LDAP password and admin_token secret by reading the file.

Statement

Not vulnerable. This issue did not affect the version of openstack-keystone as shipped with Red Hat OpenStack Folsom.

Frequently Asked Questions

Want to get errata notifications? Sign up here.