Lucene search

K
redhatRedHatRHSA-2022:8868
HistoryDec 07, 2022 - 8:09 p.m.

(RHSA-2022:8868) Moderate: Red Hat OpenStack Platform 16.1.9 (python-scciclient) security update

2022-12-0720:09:55
access.redhat.com
9
red hat openstack platform
python-scciclient
security update
missing server certificate verification
cve-2022-2996
unix

7.4 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

HIGH

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

NONE

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N

0.001 Low

EPSS

Percentile

41.7%

Python ServerView Common Command Interface (SCCI) Client Library

Security Fix(es):

  • missing server certificate verification (CVE-2022-2996)

For more details about the security issue(s), including the impact, a CVSS
score, acknowledgments, and other related information, refer to the CVE
page listed in the References section.

OSVersionArchitecturePackageVersionFilename
RedHat8noarchpython3-scciclient< 0.9.1-2.20220111031440.el8ostpython3-scciclient-0.9.1-2.20220111031440.el8ost.noarch.rpm

7.4 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

HIGH

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

NONE

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N

0.001 Low

EPSS

Percentile

41.7%