Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-5gp5-vxj6-4257

Опубликовано: 07 мар. 2023
Источник: github
Github: Прошло ревью
CVSS3: 2.8

Описание

OpenStack Glance Inclusion of Functionality from Untrusted Control Sphere vulnerability

A flaw was found in openstack-glance. This issue could allow a remote, authenticated attacker to tamper with images, compromising the integrity of virtual machines created using these modified images.

Пакеты

Наименование

glance

pip
Затронутые версииВерсия исправления

<= 25.1.0

Отсутствует

EPSS

Процентиль: 44%
0.00214
Низкий

2.8 Low

CVSS3

Дефекты

CWE-829

Связанные уязвимости

CVSS3: 2.8
ubuntu
почти 3 года назад

A flaw was found in openstack-glance. This issue could allow a remote, authenticated attacker to tamper with images, compromising the integrity of virtual machines created using these modified images.

CVSS3: 4.8
redhat
больше 3 лет назад

A flaw was found in openstack-glance. This issue could allow a remote, authenticated attacker to tamper with images, compromising the integrity of virtual machines created using these modified images.

CVSS3: 2.8
nvd
почти 3 года назад

A flaw was found in openstack-glance. This issue could allow a remote, authenticated attacker to tamper with images, compromising the integrity of virtual machines created using these modified images.

CVSS3: 2.8
debian
почти 3 года назад

A flaw was found in openstack-glance. This issue could allow a remote, ...

EPSS

Процентиль: 44%
0.00214
Низкий

2.8 Low

CVSS3

Дефекты

CWE-829