Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2022-4134

Опубликовано: 06 мар. 2023
Источник: debian

Описание

A flaw was found in openstack-glance. This issue could allow a remote, authenticated attacker to tamper with images, compromising the integrity of virtual machines created using these modified images.

Примечания

  • There's no code fix, just an update on best practices

  • https://bugzilla.redhat.com/show_bug.cgi?id=2147462

  • https://wiki.openstack.org/wiki/OSSN/OSSN-0090

  • https://bugs.launchpad.net/ossn/+bug/1990157

Связанные уязвимости

CVSS3: 2.8
ubuntu
почти 3 года назад

A flaw was found in openstack-glance. This issue could allow a remote, authenticated attacker to tamper with images, compromising the integrity of virtual machines created using these modified images.

CVSS3: 4.8
redhat
больше 3 лет назад

A flaw was found in openstack-glance. This issue could allow a remote, authenticated attacker to tamper with images, compromising the integrity of virtual machines created using these modified images.

CVSS3: 2.8
nvd
почти 3 года назад

A flaw was found in openstack-glance. This issue could allow a remote, authenticated attacker to tamper with images, compromising the integrity of virtual machines created using these modified images.

CVSS3: 2.8
github
почти 3 года назад

OpenStack Glance Inclusion of Functionality from Untrusted Control Sphere vulnerability