Back

MEDIUM

Unclaimed S3 Bucket Reference in psf/requests Documentation

Published Nov 14, 2024

Description

An unclaimed Amazon S3 bucket, 'codeconf', is referenced in an audio file link within the .rst documentation file. This bucket has been claimed by an external party. The use of this unclaimed S3 bucket could lead to data integrity issues, data leakage, availability problems, loss of trustworthiness, and potential further attacks if the bucket is used to host malicious content or as a pivot point for further attacks.

Affected products

Remediation

Red Hat mitigation

Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base or stability.

Weaknesses (2)

References (7)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner @huntr_ai
Published Nov 14, 2024
Updated Nov 18, 2024
Reserved Feb 20, 2024
CISA Vulnrichment
Updated Nov 18, 2024
NVD
Status Deferred
Modified Jun 17, 2026
Red Hat
Severity Moderate
Public date Nov 14, 2024
ENISA EUVD
Assigner @huntr_ai
Published Nov 14, 2024
Updated Nov 18, 2024
Exploited since n/a
EUVD-2024-17416