Back

MEDIUM

Tripleo-ansible: bind keys are world readable

Published Mar 15, 2024

Description

An access-control flaw was found in the OpenStack Designate component where private configuration information including access keys to BIND were improperly made world readable. A malicious attacker with access to any container could exploit this flaw to access sensitive information.

Affected products

Remediation

No remediation recorded yet.

Metrics

Weaknesses (1)

References (6)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner redhat
Published Mar 15, 2024
Updated Feb 25, 2026
Reserved Dec 12, 2023
CISA Vulnrichment
Updated Mar 15, 2024
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity Moderate
Public date Mar 15, 2024