VDB
Sign up
MEDIUM4.3

PYSEC-2026-911

OpenStack Nova uses insecure keystone middleware tmpdir by default

Quick fix

PYSEC-2026-911 — python-keystoneclient: upgrade to the fixed version with the command below.

pip install --upgrade 'python-keystoneclient>=0.2.4'

Details

keystone/middleware/auth_token.py in OpenStack Nova Folsom, Grizzly, and Havana uses an insecure temporary directory for storing signing certificates, which allows local users to spoof servers by pre-creating this directory, which is reused by Nova, as demonstrated using /tmp/keystone-signing-nova on Fedora.

Are you affected?

Enter the version of the package you're using.

Affected packages

PyPI/python-keystoneclient
Introduced in: 0Fixed in: 0.2.4
Fixpip install --upgrade 'python-keystoneclient>=0.2.4'

References