Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2013-4354

Опубликовано: 19 сент. 2013
Источник: redhat
CVSS2: 4

Описание

The API before 2.1 in OpenStack Image Registry and Delivery Service (Glance) makes it easier for local users to inject images into arbitrary tenants by adding the tenant as a member of the image.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat OpenStack Platform 3openstack-glanceAffected
Red Hat OpenStack Platform 4openstack-glanceAffected

Показывать по

Дополнительная информация

Статус:

Moderate
https://bugzilla.redhat.com/show_bug.cgi?id=1008615OpenStack: Glance image creation in other tenant accounts

4 Medium

CVSS2

Связанные уязвимости

ubuntu
около 12 лет назад

The API before 2.1 in OpenStack Image Registry and Delivery Service (Glance) makes it easier for local users to inject images into arbitrary tenants by adding the tenant as a member of the image.

nvd
около 12 лет назад

The API before 2.1 in OpenStack Image Registry and Delivery Service (Glance) makes it easier for local users to inject images into arbitrary tenants by adding the tenant as a member of the image.

debian
около 12 лет назад

The API before 2.1 in OpenStack Image Registry and Delivery Service (G ...

github
больше 3 лет назад

The API before 2.1 in OpenStack Image Registry and Delivery Service (Glance) makes it easier for local users to inject images into arbitrary tenants by adding the tenant as a member of the image.

4 Medium

CVSS2