Описание
The v2 API in OpenStack Glance Grizzly, Folsom (2012.2), and Essex (2012.1) allows remote authenticated users to delete arbitrary non-protected images via an image deletion request. NOTE: this vulnerability exists because of an incomplete fix for CVE-2012-4573.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | released | 2012.2-0ubuntu2.3 |
| hardy | DNE | |
| lucid | DNE | |
| oneiric | not-affected | |
| precise | not-affected | |
| quantal | released | 2012.2-0ubuntu2.3 |
| upstream | released | 2012.1.1-3 |
Показывать по
Ссылки на источники
5.5 Medium
CVSS2
Связанные уязвимости
The v2 API in OpenStack Glance Grizzly, Folsom (2012.2), and Essex (2012.1) allows remote authenticated users to delete arbitrary non-protected images via an image deletion request. NOTE: this vulnerability exists because of an incomplete fix for CVE-2012-4573.
The v2 API in OpenStack Glance Grizzly, Folsom (2012.2), and Essex (20 ...
OpenStack Glance arbitrary deletion of non-protected images
5.5 Medium
CVSS2