Huawei FusionSphere OpenStack information leakage (CVE-2017-8191)
Huawei FusionSphere OpenStack information leakage (CVE-2017-8191)
Release date:
Updated on:
Affected Systems:
Huawei FusionSphere OpenStack 100R006C00SPC102 (NFV)
Description:
Bugtraq id: 102282
CVE (CAN) ID: CVE-2017-8191
FusionSphere is a cloud operating system with proprietary intellectual property rights of Huawei.
FusionSphere OpenStack V100R006C00SPC102 (NFV) has a weak encryption algorithm vulnerability. Attackers can exploit this vulnerability to crack ciphertext and cause transmission information leakage.
<* Source: vendor
*>
Suggestion:
Vendor patch:
Huawei
------
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Http://www.huawei.com
Http://www.huawei.com/en/psirt/security-advisories/huawei-sa-20171018-01-fusionsphere-en