CVE-2014-0204
Publication date 3 November 2014
Last updated 24 July 2024
Ubuntu priority
OpenStack Identity (Keystone) before 2014.1.1 does not properly handle when a role is assigned to a group that has the same ID as a user, which allows remote authenticated users to gain privileges that are assigned to a group with the same ID.
Status
Package | Ubuntu Release | Status |
---|---|---|
keystone | 14.04 LTS trusty | Not in release |