CVE-2023-6725: Red Hat Openstack Platform

Medium severity, CVSS 5.5. EPSS: 0.2% chance of exploitation in the next 30 days.

An access-control flaw was found in the OpenStack Designate component where private configuration information including access keys to BIND were improperly made world readable. A malicious attacker with access to any container could exploit this flaw to access sensitive information.

Affected products

  • Red Hat Openstack Platform: version 17.1 only

Published 2024-03-15. Last modified 2026-06-17.