Security News

Cybersecurity news aggregator

🔓
HIGH Vulnerabilities Ubuntu Security

USN-8008-1: Keystone Middleware vulnerability

  • What: A vulnerability in Keystone Middleware allows attackers to escalate privileges or impersonate users.
  • Why: Improper sanitization of authentication headers during OAuth 2.0 token processing.
  • Impact: Organizations using OpenStack Keystone Middleware may be vulnerable to privilege escalation attacks.
Read Full Article →

Grzegorz Grasza discovered that the Keystone Middleware incorrectly sanitized authentication headers before processing OAuth 2.0 tokens. An attacker could possibly use this issue to escalate privileges or impersonate other users.

Share this article