Information disclosure in Heat - CVE-2023-1625

 

Information disclosure in Heat - CVE-2023-1625

Published: June 5, 2023


Vulnerability identifier: #VU76912
CSH Severity: Low
CVSS v4: 5.3 [CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N]
CVE-ID: CVE-2023-1625
CWE-ID: CWE-200
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote user to gain access to potentially sensitive information.

The vulnerability exists due to excessive data output by the "stack show" command. A remote user can reveal parameters which are supposed to remain hidden.


Affected software

Heat
SUSE Linux Enterprise High Performance Computing 12
SUSE Linux Enterprise Server 12
HPE Helion Openstack
SUSE OpenStack Cloud
SUSE OpenStack Cloud Crowbar
Ubuntu
python-Werkzeug
venv-openstack-octavia-x86_64
venv-openstack-swift-x86_64
openstack-swift
openstack-swift-account
python-swift
openstack-swift-container
openstack-swift-proxy
openstack-swift-object
venv-openstack-magnum-x86_64
venv-openstack-designate-x86_64
venv-openstack-sahara-x86_64
openstack-heat-engine
openstack-heat-doc
openstack-heat-test
openstack-heat-plugin-heat_docker
openstack-heat-api
python-heat
openstack-heat-api-cloudwatch
openstack-heat-api-cfn
openstack-heat
venv-openstack-heat-x86_64
python-heat (Ubuntu package)
python3-heat (Ubuntu package)
venv-openstack-keystone-x86_64

How to mitigate CVE-2023-1625

Install updates from vendor's website.

Heat - update to 20.0.0
python-Werkzeug - addressed in versions 0.12.2-3.6.2, 0.14.1-3.6.2
venv-openstack-octavia-x86_64 - addressed in versions 1.0.6~dev3-12.47.1, 3.2.3~dev7-4.41.2
venv-openstack-swift-x86_64 - update to 2.19.3~dev3-2.36.3
openstack-swift - update to 2.19.3~dev3-3.6.3
openstack-swift-account - update to 2.19.3~dev3-3.6.3
python-swift - update to 2.19.3~dev3-3.6.3
openstack-swift-container - update to 2.19.3~dev3-3.6.3
openstack-swift-proxy - update to 2.19.3~dev3-3.6.3
openstack-swift-object - update to 2.19.3~dev3-3.6.3
venv-openstack-magnum-x86_64 - addressed in versions 5.0.2_5.0.2_5.0.2~dev31-11.46.1, 7.2.1~dev1-4.41.3
venv-openstack-designate-x86_64 - addressed in versions 5.0.3~dev7-12.45.1, 7.0.2~dev2-3.41.2
venv-openstack-sahara-x86_64 - addressed in versions 7.0.5~dev4-11.46.1, 9.0.2~dev15-3.41.2
openstack-heat-engine - addressed in versions 9.0.8~dev22-3.30.3, 11.0.4~dev4-3.24.4
openstack-heat-doc - update to 9.0.8~dev22-3.30.3
openstack-heat-test - update to 9.0.8~dev22-3.30.3
openstack-heat-plugin-heat_docker - addressed in versions 9.0.8~dev22-3.30.3, 11.0.4~dev4-3.24.4
openstack-heat-api - addressed in versions 9.0.8~dev22-3.30.3, 11.0.4~dev4-3.24.4
python-heat - addressed in versions 9.0.8~dev22-3.30.3, 11.0.4~dev4-3.24.4
openstack-heat-api-cloudwatch - update to 9.0.8~dev22-3.30.3
openstack-heat-api-cfn - addressed in versions 9.0.8~dev22-3.30.3, 11.0.4~dev4-3.24.4
openstack-heat - addressed in versions 9.0.8~dev22-3.30.3, 11.0.4~dev4-3.24.4
venv-openstack-heat-x86_64 - addressed in versions 9.0.8~dev22-12.51.1, 11.0.4~dev4-3.43.2
python-heat (Ubuntu package) - update to 1:10.0.2-0ubuntu1.1
python3-heat (Ubuntu package) - addressed in versions 1:14.2.0-0ubuntu1.1, 1:18.0.1-0ubuntu1.1
venv-openstack-keystone-x86_64 - update to 14.2.1~dev9-3.42.2

External References

Related Security Bulletins