CVE-2022-38065

CVSS V2 None CVSS V3 None
Description
A privilege escalation vulnerability exists in the oslo.privsep functionality of OpenStack git master 05194e7618 and prior. Overly permissive functionality within tools leveraging this library within a container can lead increased privileges.
Overview
  • CVE ID
  • CVE-2022-38065
  • Assigner
  • talos-cna@cisco.com
  • Vulnerability Status
  • Analyzed
  • Published Version
  • 2022-12-21T11:15:10
  • Last Modified Date
  • 2022-12-28T19:23:12
CPE Configuration (Product)
CPE Vulnerable Operator Version Start Version End
cpe:2.3:a:redhat:openstack:-:*:*:*:*:*:*:* 1 OR
History
Created Old Value New Value Data Type Notes
2022-12-21 12:15:22 Added to TrackCVE
2022-12-21 12:15:23 Weakness Enumeration new
2022-12-21 14:15:24 2022-12-21T13:35:41 CVE Modified Date updated
2022-12-21 14:15:24 Received Awaiting Analysis Vulnerability Status updated
2022-12-21 14:15:26 CVSS V3 information new
2022-12-23 11:15:11 Awaiting Analysis Undergoing Analysis Vulnerability Status updated
2022-12-23 11:15:13 CVSS V3 information new
2022-12-28 20:14:46 2022-12-28T19:23:12 CVE Modified Date updated
2022-12-28 20:14:46 Undergoing Analysis Analyzed Vulnerability Status updated
2022-12-28 20:14:48 Weakness Enumeration update
2022-12-28 20:14:50 CPE Information updated
2022-12-28 20:14:50 CVSS V3 information new