Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2013-4497

Опубликовано: 30 окт. 2012
Источник: redhat
CVSS2: 3.6
EPSS Низкий

Описание

The XenAPI backend in OpenStack Compute (Nova) Folsom, Grizzly, and Havana before 2013.2 does not properly apply security groups (1) when resizing an image or (2) during live migration, which allows remote attackers to bypass intended restrictions.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat OpenStack Platform 4openstack-novaAffected
OpenStack 3 for RHEL 6openstack-novaFixedRHSA-2014:036603.04.2014

Показывать по

Дополнительная информация

Статус:

Low
https://bugzilla.redhat.com/show_bug.cgi?id=1026171openstack-nova: XenAPI security groups not kept through migrate or resize

EPSS

Процентиль: 29%
0.00106
Низкий

3.6 Low

CVSS2

Связанные уязвимости

ubuntu
почти 12 лет назад

The XenAPI backend in OpenStack Compute (Nova) Folsom, Grizzly, and Havana before 2013.2 does not properly apply security groups (1) when resizing an image or (2) during live migration, which allows remote attackers to bypass intended restrictions.

nvd
почти 12 лет назад

The XenAPI backend in OpenStack Compute (Nova) Folsom, Grizzly, and Havana before 2013.2 does not properly apply security groups (1) when resizing an image or (2) during live migration, which allows remote attackers to bypass intended restrictions.

debian
почти 12 лет назад

The XenAPI backend in OpenStack Compute (Nova) Folsom, Grizzly, and Ha ...

github
около 3 лет назад

OpenStack Compute Nova Improper Access Control

EPSS

Процентиль: 29%
0.00106
Низкий

3.6 Low

CVSS2