Medium severity6.6NVD Advisory· Published Sep 1, 2022· Updated Jun 17, 2026
CVE-2022-2447
CVE-2022-2447
Description
A flaw was found in Keystone. There is a time lag (up to one hour in a default configuration) between when security policy says a token should be revoked from when it is actually revoked. This could allow a remote administrator to secretly maintain access for longer than expected.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
7(expand)+ 1 more
- (no CPE)
- (no CPE)
Patches
Vulnerability mechanics
References
2- bugzilla.redhat.com/show_bug.cginvdExploitIssue TrackingVendor Advisory
- access.redhat.com/security/cve/CVE-2022-2447nvdVendor Advisory
News mentions
0No linked articles in our index yet.