Back to bug 2181761

Who When What Removed Added
Nick Tait 2023-03-25 17:50:26 UTC CC security-response-team
Nick Tait 2023-03-25 17:51:30 UTC Blocks 2170395
Nick Tait 2023-03-25 17:59:42 UTC CC alee, eglynn, hrybacki, jjoyce, lhh, mburns, mgarciac, spower
Nick Tait 2023-03-25 18:00:43 UTC Alias CVE-2023-1633
Summary EMBARGOED barbican: insecure password file EMBARGOED CVE-2023-1633 barbican: insecure password file
Yadnyawalk Tale 2023-03-31 10:25:40 UTC Comment 0 updated
Yadnyawalk Tale 2023-03-31 10:26:22 UTC Summary EMBARGOED CVE-2023-1633 barbican: insecure password file EMBARGOED CVE-2023-1633 openstack-barbican: Insecure Barbican configuration file leaking credential
CC ytale
Yadnyawalk Tale 2023-03-31 10:40:19 UTC Severity medium low
Priority medium low
Nick Tait 2023-03-31 23:02:18 UTC Depends On 2183655, 2183656, 2183657
Yadnyawalk Tale 2023-04-03 12:36:30 UTC CC jjung
Nick Tait 2023-04-21 21:04:14 UTC Doc Text A credentials leak flaw was discovered in OpenStack Barbican. A local authenticated attacker might be able to read the configuration file, gaining access to sensitive credentials.
Priority low medium
Severity low medium
Nick Tait 2023-04-21 22:48:59 UTC Group security, qe_staff
Summary EMBARGOED CVE-2023-1633 openstack-barbican: Insecure Barbican configuration file leaking credential CVE-2023-1633 openstack-barbican: Insecure Barbican configuration file leaking credential
Nick Tait 2023-04-21 22:49:13 UTC Depends On 2188734
RaTasha Tillery-Smith 2023-04-24 12:41:16 UTC Doc Text A credentials leak flaw was discovered in OpenStack Barbican. A local authenticated attacker might be able to read the configuration file, gaining access to sensitive credentials. A credentials leak flaw was found in OpenStack Barbican. This flaw allows a local authenticated attacker to read the configuration file, gaining access to sensitive credentials.
Salvatore Bonaccorso 2023-04-24 19:34:42 UTC CC carnil
Flags needinfo?(security-response-team)
Product Security DevOps Team 2023-04-25 00:32:22 UTC Flags needinfo?(security-response-team) needinfo?(ntait)
Nick Tait 2023-05-03 20:47:13 UTC Flags needinfo?(ntait)
Douglas Mendizábal 2023-05-04 18:18:13 UTC CC dmendiza
Salvatore Bonaccorso 2023-05-05 07:36:56 UTC Flags needinfo?(ntait)
Nick Tait 2023-05-09 21:09:21 UTC Flags needinfo?(ntait)
Grzegorz Grasza 2023-05-10 12:41:29 UTC CC ggrasza
Harry Rybacki 2023-05-10 12:53:27 UTC CC hrybacki
Takashi Kajinami 2023-05-10 14:49:49 UTC CC tkajinam
Grzegorz Grasza 2023-05-10 15:46:34 UTC Link ID RDO 48529
Red Hat Bugzilla 2023-07-07 08:32:17 UTC Assignee security-response-team nobody
CC security-response-team
Salvatore Bonaccorso 2023-07-24 07:46:41 UTC Flags needinfo?(ntait)
Nick Tait 2023-07-25 17:44:07 UTC Flags needinfo?(ntait)

Back to bug 2181761