CVE-2023-6725: Red Hat Openstack Platform
Medium severity, CVSS 5.5. EPSS: 0.2% chance of exploitation in the next 30 days.
An access-control flaw was found in the OpenStack Designate component where private configuration information including access keys to BIND were improperly made world readable. A malicious attacker with access to any container could exploit this flaw to access sensitive information.
Affected products
- Red Hat Openstack Platform: version 17.1 only
Published 2024-03-15. Last modified 2026-06-17.