Описание
The instance rescue mode in OpenStack Compute (Nova) 2013.2 before 2013.2.3 and Icehouse before 2014.1, when using libvirt to spawn images and use_cow_images is set to false, allows remote authenticated users to read certain compute host files by overwriting an instance disk with a crafted image.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | not-affected | |
| esm-infra-legacy/trusty | DNE | trusty/esm was DNE [trusty was not-affected] |
| lucid | DNE | |
| precise | not-affected | |
| quantal | not-affected | |
| saucy | released | 1:2013.2.3-0ubuntu1.2 |
| trusty | not-affected | |
| trusty/esm | DNE | trusty was not-affected |
| upstream | released | 2013.2.2-4 |
Показывать по
3.5 Low
CVSS2
Связанные уязвимости
The instance rescue mode in OpenStack Compute (Nova) 2013.2 before 2013.2.3 and Icehouse before 2014.1, when using libvirt to spawn images and use_cow_images is set to false, allows remote authenticated users to read certain compute host files by overwriting an instance disk with a crafted image.
The instance rescue mode in OpenStack Compute (Nova) 2013.2 before 2013.2.3 and Icehouse before 2014.1, when using libvirt to spawn images and use_cow_images is set to false, allows remote authenticated users to read certain compute host files by overwriting an instance disk with a crafted image.
The instance rescue mode in OpenStack Compute (Nova) 2013.2 before 201 ...
OpenStack Nova host data leak to vm instance in rescue mode
3.5 Low
CVSS2