Opendev Octavia 1.0.0 Beta 2 for OpenStack

CPE Details

Opendev Octavia 1.0.0 Beta 2 for OpenStack
1.0.0
2019-11-18
12h07 +00:00
2019-11-18
12h07 +00:00
Alerte pour un CPE
Restez informé de toutes modifications pour un CPE spécifique.
Gestion des notifications

CPE Name: cpe:2.3:a:opendev:octavia:1.0.0:beta2:*:*:*:openstack:*:*

Informations

Vendor

opendev

Product

octavia

Version

1.0.0

Update

beta2

Target Software

openstack

Related CVE

Open and find in CVE List

CVE ID Publié Description Score Gravité
CVE-2019-17134 2019-10-08 15h14 +00:00 Amphora Images in OpenStack Octavia >=0.10.0 <2.1.2, >=3.0.0 <3.2.0, >=4.0.0 <4.1.0 allows anyone with access to the management network to bypass client-certificate based authentication and retrieve information or issue configuration commands via simple HTTP requests to the Agent on port https/9443, because the cmd/agent.py gunicorn cert_reqs option is True but is supposed to be ssl.CERT_REQUIRED.
9.1
Critique