Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2015-3280

Опубликовано: 01 сент. 2015
Источник: redhat
CVSS2: 3.5
EPSS Низкий

Описание

OpenStack Compute (nova) before 2014.2.4 (juno) and 2015.1.x before 2015.1.2 (kilo) does not properly delete instances from compute nodes, which allows remote authenticated users to cause a denial of service (disk consumption) by deleting instances while in the resize state.

A flaw was found in the way OpenStack Compute (nova) handled the resize state. If an authenticated user deleted an instance while it was in the resize state, it could cause the original instance to not be deleted from the compute node it was running on, allowing the user to cause a denial of service.

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-772
https://bugzilla.redhat.com/show_bug.cgi?id=1257942openstack-nova: Deleting instances in resize state fails

EPSS

Процентиль: 74%
0.00795
Низкий

3.5 Low

CVSS2

Связанные уязвимости

ubuntu
больше 10 лет назад

OpenStack Compute (nova) before 2014.2.4 (juno) and 2015.1.x before 2015.1.2 (kilo) does not properly delete instances from compute nodes, which allows remote authenticated users to cause a denial of service (disk consumption) by deleting instances while in the resize state.

nvd
больше 10 лет назад

OpenStack Compute (nova) before 2014.2.4 (juno) and 2015.1.x before 2015.1.2 (kilo) does not properly delete instances from compute nodes, which allows remote authenticated users to cause a denial of service (disk consumption) by deleting instances while in the resize state.

debian
больше 10 лет назад

OpenStack Compute (nova) before 2014.2.4 (juno) and 2015.1.x before 20 ...

github
больше 3 лет назад

OpenStack Compute (nova) allows remote authenticated users to cause a denial of service

suse-cvrf
около 10 лет назад

Security update for openstack-nova and openstack-neutron

EPSS

Процентиль: 74%
0.00795
Низкий

3.5 Low

CVSS2