Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-r7pj-rvwg-vxhr

Опубликовано: 17 мая 2022
Источник: github
Github: Прошло ревью

Описание

OpenStack Image Registry and Delivery Service (Glance) Improper Input Validation vulnerability

The Sheepdog backend in OpenStack Image Registry and Delivery Service (Glance) 2013.2 before 2013.2.4 and icehouse before icehouse-rc2 allows remote authenticated users with permission to insert or modify an image to execute arbitrary commands via a crafted location.

Пакеты

Наименование

glance

pip
Затронутые версииВерсия исправления

>= 2013.2, < 2013.2.4

2013.2.4

EPSS

Процентиль: 68%
0.00557
Низкий

Дефекты

CWE-20

Связанные уязвимости

ubuntu
почти 12 лет назад

The Sheepdog backend in OpenStack Image Registry and Delivery Service (Glance) 2013.2 before 2013.2.4 and icehouse before icehouse-rc2 allows remote authenticated users with permission to insert or modify an image to execute arbitrary commands via a crafted location.

redhat
почти 12 лет назад

The Sheepdog backend in OpenStack Image Registry and Delivery Service (Glance) 2013.2 before 2013.2.4 and icehouse before icehouse-rc2 allows remote authenticated users with permission to insert or modify an image to execute arbitrary commands via a crafted location.

nvd
почти 12 лет назад

The Sheepdog backend in OpenStack Image Registry and Delivery Service (Glance) 2013.2 before 2013.2.4 and icehouse before icehouse-rc2 allows remote authenticated users with permission to insert or modify an image to execute arbitrary commands via a crafted location.

debian
почти 12 лет назад

The Sheepdog backend in OpenStack Image Registry and Delivery Service ...

EPSS

Процентиль: 68%
0.00557
Низкий

Дефекты

CWE-20