Описание
The v2 API in OpenStack Glance Grizzly, Folsom (2012.2), and Essex (2012.1) allows remote authenticated users to delete arbitrary non-protected images via an image deletion request. NOTE: this vulnerability exists because of an incomplete fix for CVE-2012-4573.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | released | 2012.2-0ubuntu2.3 |
| hardy | DNE | |
| lucid | DNE | |
| oneiric | not-affected | |
| precise | not-affected | |
| quantal | released | 2012.2-0ubuntu2.3 |
| upstream | released | 2012.1.1-3 |
Показывать по
Ссылки на источники
EPSS
5.5 Medium
CVSS2
Связанные уязвимости
The v2 API in OpenStack Glance Grizzly, Folsom (2012.2), and Essex (2012.1) allows remote authenticated users to delete arbitrary non-protected images via an image deletion request. NOTE: this vulnerability exists because of an incomplete fix for CVE-2012-4573.
The v2 API in OpenStack Glance Grizzly, Folsom (2012.2), and Essex (20 ...
OpenStack Glance arbitrary deletion of non-protected images
EPSS
5.5 Medium
CVSS2