{"id":"CVE-2014-0204","details":"OpenStack Identity (Keystone) before 2014.1.1 does not properly handle when a role is assigned to a group that has the same ID as a user, which allows remote authenticated users to gain privileges that are assigned to a group with the same ID.","aliases":["GHSA-c4p9-87h3-7vr4"],"modified":"2026-01-27T04:12:27.125010Z","published":"2014-11-03T23:55:05Z","withdrawn":"2026-01-27T04:12:27.125010Z","references":[{"type":"FIX","url":"http://www.openwall.com/lists/oss-security/2014/05/21/3"},{"type":"REPORT","url":"https://bugs.launchpad.net/keystone/+bug/1309228"},{"type":"FIX","url":"https://review.openstack.org/#/c/94396/"}],"schema_version":"1.7.3"}