Bug 991729 (CVE-2016-6829) - VUL-1: CVE-2016-6829: crowbar-openstack,crowbar-barclamp-trove: keystone user for trove is using a default password
Summary: VUL-1: CVE-2016-6829: crowbar-openstack,crowbar-barclamp-trove: keystone user...
Status: RESOLVED FIXED
Alias: CVE-2016-6829
Product: SUSE Security Incidents
Classification: Novell Products
Component: Incidents (show other bugs)
Version: unspecified
Hardware: Other Other
: P4 - Low : Major
Target Milestone: unspecified
Assignee: Cloud Bugs
QA Contact: Security Team bot
URL: https://trello.com/c/UXmGHX8S
Whiteboard: CVSSv2:SUSE:CVE-2016-6829:5.8:(AV:A/A...
Keywords:
Depends on:
Blocks:
 
Reported: 2016-08-02 14:03 UTC by Ralf Haferkamp
Modified: 2020-03-20 14:44 UTC (History)
10 users (show)

See Also:
Found By: ---
Services Priority:
Business Priority:
Blocker: ---
Marketing QA Status: ---
IT Deployment: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Comment 5 Andreas Stieger 2016-08-11 12:35:29 UTC
https://github.com/crowbar/crowbar-openstack/pull/485
Comment 8 Swamp Workflow Management 2016-08-11 22:00:15 UTC
bugbot adjusting priority
Comment 9 Marcus Meissner 2016-08-18 07:22:08 UTC
CVE-2016-6829 was assigned by Mitre
Comment 11 Vincent Untz 2016-09-14 09:09:38 UTC
All fixes are merged, to be submitted to the various releases on next update.
Comment 14 Swamp Workflow Management 2016-12-08 13:15:35 UTC
SUSE-SU-2016:3056-1: An update that fixes one vulnerability is now available.

Category: security (low)
Bug References: 991729
CVE References: CVE-2016-6829
Sources used:
SUSE OpenStack Cloud 5 (src):    crowbar-barclamp-trove-1.9+git.1473844105.932298f-9.1
Comment 15 Marcus Meissner 2017-02-24 09:19:56 UTC
QA finds that crowbar-openstack that is currently in QA is not fixed.
Comment 19 Alexandros Toptsoglou 2020-03-20 14:44:41 UTC
done