PT-2023-17138 · Openstack+1 · Openstack-Barbican+1

Nick Tait

·

Published

2023-09-23

·

Updated

2026-01-29

·

CVE-2023-1636

CVSS v3.1

6.0

Medium

VectorAV:N/AC:H/PR:L/UI:N/S:C/C:L/I:L/A:L
Name of the Vulnerable Software and Affected Versions OpenStack Barbican (affected versions not specified)
Description A vulnerability was found in OpenStack Barbican containers, applicable only to deployments utilizing an all-in-one configuration. Barbican containers share the same CGROUP, USER, and NET namespace with the host system and other OpenStack services. If any service is compromised, it could gain access to the data transmitted to and from Barbican.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Weakness Enumeration

Related Identifiers

BDU:2026-03563
CVE-2023-1636
GHSA-6RX9-C2RH-3QV4

Affected Products

Openstack-Barbican
Red Os