Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2015-8234

Опубликовано: 29 мар. 2017
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS2: 4.3
CVSS3: 5.5

Описание

The image signature algorithm in OpenStack Glance 11.0.0 allows remote attackers to bypass the signature verification process via a crafted image, which triggers an MD5 collision.

РелизСтатусПримечание
devel

not-affected

2:12.0.0-0ubuntu2
esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was not-affected [code not present]]
esm-infra/xenial

not-affected

2:12.0.0-0ubuntu2
precise

not-affected

code not present
trusty

not-affected

code not present
trusty/esm

DNE

trusty was not-affected [code not present]
upstream

needs-triage

vivid

not-affected

code not present
vivid/stable-phone-overlay

DNE

vivid/ubuntu-core

DNE

Показывать по

EPSS

Процентиль: 33%
0.00131
Низкий

4.3 Medium

CVSS2

5.5 Medium

CVSS3

Связанные уязвимости

redhat
около 10 лет назад

The image signature algorithm in OpenStack Glance 11.0.0 allows remote attackers to bypass the signature verification process via a crafted image, which triggers an MD5 collision.

CVSS3: 5.5
nvd
почти 9 лет назад

The image signature algorithm in OpenStack Glance 11.0.0 allows remote attackers to bypass the signature verification process via a crafted image, which triggers an MD5 collision.

CVSS3: 5.5
debian
почти 9 лет назад

The image signature algorithm in OpenStack Glance 11.0.0 allows remote ...

CVSS3: 5.5
github
больше 3 лет назад

OpenStack Glance Signature Verification Bypass

EPSS

Процентиль: 33%
0.00131
Низкий

4.3 Medium

CVSS2

5.5 Medium

CVSS3