Sven, in your associated post [1] you mention "there is now CVE". But I don't find any reference (here or on the blog) of what the CVE identifier is. Could you confirm if there has been one reserved yet?
[1] https://packetstormsecurity.com/files/169464/openstack-missingvalidation.txt
Sven, in your associated post [1] you mention "there is now CVE". But I don't find any reference (here or on the blog) of what the CVE identifier is. Could you confirm if there has been one reserved yet?
[1] https:/ /packetstormsec urity.com/ files/169464/ openstack- missingvalidati on.txt