CVE-2013-1977
Description
From CVE.org
OpenStack devstack uses world-readable permissions for keystone.conf, which allows local users to obtain sensitive information such as the LDAP password and admin_token secret by reading the file.
Statement
Not vulnerable. This issue did not affect the version of openstack-keystone as shipped with Red Hat OpenStack Folsom.
Frequently Asked Questions
Not sure what something means? Check out our Security Glossary.
Want to get errata notifications? Sign up here.