Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-hqfx-4x4w-vmwp

Опубликовано: 22 апр. 2022
Источник: github
Github: Прошло ревью
CVSS3: 2.8

Описание

Openstack nova qcow format could expose host filesystem information

Versions of nova before 2012.1 could expose hypervisor host files to a guest operating system when processing a maliciously constructed qcow filesystem.

Пакеты

Наименование

nova

pip
Затронутые версииВерсия исправления

< 12.0.0a0

12.0.0a0

EPSS

Процентиль: 40%
0.00182
Низкий

2.8 Low

CVSS3

Дефекты

CWE-200

Связанные уязвимости

CVSS3: 8.6
ubuntu
почти 7 лет назад

Versions of nova before 2012.1 could expose hypervisor host files to a guest operating system when processing a maliciously constructed qcow filesystem.

CVSS3: 8.6
nvd
почти 7 лет назад

Versions of nova before 2012.1 could expose hypervisor host files to a guest operating system when processing a maliciously constructed qcow filesystem.

CVSS3: 8.6
debian
почти 7 лет назад

Versions of nova before 2012.1 could expose hypervisor host files to a ...

EPSS

Процентиль: 40%
0.00182
Низкий

2.8 Low

CVSS3

Дефекты

CWE-200