Bug 2227049 - OpenStack: sudo privilege escalation vulnerability
Summary: OpenStack: sudo privilege escalation vulnerability
Keywords:
Status: CLOSED NOTABUG
Alias: None
Product: Security Response
Classification: Other
Component: vulnerability
Version: unspecified
Hardware: All
OS: Linux
medium
medium
Target Milestone: ---
Assignee: Nobody
QA Contact:
URL:
Whiteboard:
Depends On:
Blocks: 2124484
TreeView+ depends on / blocked
 
Reported: 2023-07-27 15:38 UTC by Avinash Hanwate
Modified: 2024-06-25 16:04 UTC (History)
14 users (show)

Fixed In Version:
Clone Of:
Environment:
Last Closed: 2023-08-28 12:14:40 UTC
Embargoed:


Attachments (Terms of Use)

Description Avinash Hanwate 2023-07-27 15:38:13 UTC
A privilege escalation vulnerability has been identified in certain components of the Red Hat OpenStack Platform, resulting from a misconfiguration in the sudoers policy. This misconfiguration in /etc/sudoers allows the application to execute restricted commands with root privileges. This CVE pertains to the Red Hat OpenStack Platform and shares similarities with CVE-2022-38060.

Comment 5 Avinash Hanwate 2023-08-28 12:14:40 UTC

*** This bug has been marked as a duplicate of bug 2124758 ***


Note You need to log in before you can comment on or make changes to this bug.