A flaw was found in the openstack-barbican component. This issue allows an access policy bypass via a query string when accessing the API.
| Software | From | Fixed in |
|---|---|---|
| redhat / openstack | 16.1 | 16.1.x |
| redhat / openstack | 16.2 | 16.2.x |
| redhat / openstack_for_ibm_power | 16.1 | 16.1.x |
| redhat / openstack | 13 | 13.x |
| redhat / openstack_for_ibm_power | 13 | 13.x |
| redhat / openstack_for_ibm_power | 16.2 | 16.2.x |
| redhat / openstack | 17 | 17.x |
| redhat / openstack_platform | 13.0 | 13.0.x |