OpenStack Keystone Folsom (2012.2) does not properly perform revocation checks for Keystone PKI tokens when done through a server, which allows remote attackers to bypass intended access restrictions via a revoked PKI token.
| Package (Ecosystem) | Introduced | Fixed | Limit |
|---|---|---|---|
| keystone(PyPI) | 2012.2 | 2012.2.4 | N/A |
CVSS Metrics