Search CVE reports


Toggle filters

21 – 30 of 68 results


CVE-2015-3280

Medium priority

Some fixes available 1 of 2

OpenStack Compute (nova) before 2014.2.4 (juno) and 2015.1.x before 2015.1.2 (kilo) does not properly delete instances from compute nodes, which allows remote authenticated users to cause a denial of service (disk consumption) by...

1 affected package

nova

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
nova
Show less packages

CVE-2015-3241

Medium priority

Some fixes available 1 of 3

OpenStack Compute (nova) 2015.1 through 2015.1.1, 2014.2.3, and earlier does not stop the migration process when the instance is deleted, which allows remote authenticated users to cause a denial of service (disk, network, and...

1 affected package

nova

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
nova
Show less packages

CVE-2015-2687

Low priority
Ignored

OpenStack Compute (nova) Icehouse, Juno and Havana when live migration fails allows local users to access VM volumes that they would normally not have permissions for.

1 affected package

nova

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
nova
Show less packages

CVE-2015-1850

Low priority
Ignored

Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not an exploitable issue. Notes: none.

1 affected package

nova

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
nova
Show less packages

CVE-2015-0259

Low priority
Not affected

OpenStack Compute (Nova) before 2014.1.4, 2014.2.x before 2014.2.3, and kilo before kilo-3 does not validate the origin of websocket requests, which allows remote attackers to hijack the authentication of users for access to...

1 affected package

nova

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
nova
Show less packages

CVE-2014-8750

Negligible priority
Ignored

Race condition in the VMware driver in OpenStack Compute (Nova) before 2014.1.4 and 2014.2 before 2014.2rc1 allows remote authenticated users to access unintended consoles by spawning an instance that triggers the same VNC port to...

1 affected package

nova

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
nova
Show less packages

CVE-2014-8333

Negligible priority
Ignored

The VMware driver in OpenStack Compute (Nova) before 2014.1.4 allows remote authenticated users to cause a denial of service (disk consumption) by deleting an instance in the resize state.

1 affected package

nova

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
nova
Show less packages

CVE-2014-7230

Low priority

Some fixes available 2 of 15

The processutils.execute function in OpenStack oslo-incubator, Cinder, Nova, and Trove before 2013.2.4 and 2014.1 before 2014.1.3 allows local users to obtain passwords from commands that cause a ProcessExecutionError by reading the log.

3 affected packages

cinder, nova, trove

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
cinder Not affected
nova Not affected
trove Ignored
Show less packages

CVE-2014-3708

Medium priority

Some fixes available 1 of 2

OpenStack Compute (Nova) before 2014.1.4 and 2014.2.x before 2014.2.1 allows remote authenticated users to cause a denial of service (CPU consumption) via an IP filter in a list active servers API request.

1 affected package

nova

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
nova
Show less packages

CVE-2014-3608

Negligible priority
Fixed

The VMWare driver in OpenStack Compute (Nova) before 2014.1.3 allows remote authenticated users to bypass the quota limit and cause a denial of service (resource consumption) by putting the VM into the rescue state, suspending it,...

1 affected package

nova

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
nova
Show less packages