Описание
A vulnerability was found in Openstack Glance. No limits are enforced within the Glance image service for both v1 and v2 /images API POST method for authenticated users, resulting in possible denial of service attacks through database table saturation.
Затронутые пакеты
| Платформа | Пакет | Состояние | Рекомендация | Релиз |
|---|---|---|---|---|
| Red Hat Enterprise Linux OpenStack Platform 5 (Icehouse) | openstack-glance | Will not fix | ||
| Red Hat Enterprise Linux OpenStack Platform 6 (Juno) | openstack-glance | Will not fix | ||
| Red Hat Enterprise Linux OpenStack Platform 7 (Kilo) | openstack-glance | Will not fix | ||
| Red Hat OpenStack Platform 10 (Newton) | openstack-glance | Will not fix | ||
| Red Hat OpenStack Platform 8 (Liberty) | openstack-glance | Will not fix | ||
| Red Hat OpenStack Platform 9 (Mitaka) | openstack-glance | Will not fix |
Показывать по
Дополнительная информация
Статус:
EPSS
4.3 Medium
CVSS3
3.5 Low
CVSS2
Связанные уязвимости
A vulnerability was found in Openstack Glance. No limits are enforced within the Glance image service for both v1 and v2 `/images` API POST method for authenticated users, resulting in possible denial of service attacks through database table saturation.
A vulnerability was found in Openstack Glance. No limits are enforced within the Glance image service for both v1 and v2 `/images` API POST method for authenticated users, resulting in possible denial of service attacks through database table saturation.
A vulnerability was found in Openstack Glance. No limits are enforced ...
A vulnerability was found in Openstack Glance. No limits are enforced within the Glance image service for both v1 and v2 `/images` API POST method for authenticated users, resulting in possible denial of service attacks through database table saturation.
EPSS
4.3 Medium
CVSS3
3.5 Low
CVSS2