Search CVE reports


Toggle filters

51 – 60 of 68 results


CVE-2013-1838

Medium priority
Fixed

OpenStack Compute (Nova) Grizzly, Folsom (2012.2), and Essex (2012.1) does not properly implement a quota for fixed IPs, which allows remote authenticated users to cause a denial of service (resource exhaustion and failure to...

1 affected package

nova

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
nova
Show less packages

CVE-2013-1664

Medium priority

Some fixes available 10 of 12

The XML libraries for Python 3.4, 3.3, 3.2, 3.1, 2.7, and 2.6, as used in OpenStack Keystone Essex, Folsom, and Grizzly; Compute (Nova) Essex and Folsom; Cinder Folsom; Django; and possibly other products allow remote attackers to...

5 affected packages

cinder, keystone, nova, python-django, quantum

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
cinder
keystone
nova
python-django
quantum
Show less packages

CVE-2013-1068

Medium priority
Fixed

The OpenStack Nova (python-nova) package 1:2013.2.3-0 before 1:2013.2.3-0ubuntu1.2 and 1:2014.1-0 before 1:2014.1-0ubuntu1.2 and Openstack Cinder (python-cinder) package 1:2013.2.3-0 before 1:2013.2.3-0ubuntu1.1 and 1:2014.1-0...

2 affected packages

cinder, nova

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
cinder
nova
Show less packages

CVE-2013-0335

Low priority

Some fixes available 2 of 3

OpenStack Compute (Nova) Grizzly, Folsom (2012.2), and Essex (2012.1) allows remote authenticated users to gain access to a VM in opportunistic circumstances by using the VNC token for a deleted VM that was bound to the same VNC port.

1 affected package

nova

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
nova
Show less packages

CVE-2013-0326

Low priority
Ignored

OpenStack nova base images permissions are world readable

1 affected package

nova

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
nova
Show less packages

CVE-2013-0208

Medium priority
Fixed

The boot-from-volume feature in OpenStack Compute (Nova) Folsom and Essex, when using nova-volumes, allows remote authenticated users to boot from other users' volumes via a volume id in the block_device_mapping parameter.

1 affected package

nova

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
nova
Show less packages

CVE-2012-5625

Medium priority
Fixed

OpenStack Compute (Nova) Folsom before 2012.2.2 and Grizzly, when using libvirt and LVM backed instances, does not properly clear physical volume (PV) content when reallocating for instances, which allows attackers to obtain...

1 affected package

nova

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
nova
Show less packages

CVE-2012-3447

Medium priority

Some fixes available 2 of 3

virt/disk/api.py in OpenStack Compute (Nova) 2012.1.x before 2012.1.2 and Folsom before Folsom-3 allows remote authenticated users to overwrite arbitrary files via a symlink attack on a file in an image that uses a symlink that is...

1 affected package

nova

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
nova
Show less packages

CVE-2012-3371

Medium priority
Fixed

The Nova scheduler in OpenStack Compute (Nova) Folsom (2012.2) and Essex (2012.1), when DifferentHostFilter or SameHostFilter is enabled, allows remote authenticated users to cause a denial of service (excessive database lookup...

1 affected package

nova

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
nova
Show less packages

CVE-2012-3361

Medium priority

Some fixes available 2 of 3

virt/disk/api.py in OpenStack Compute (Nova) Folsom (2012.2), Essex (2012.1), and Diablo (2011.3) allows remote authenticated users to overwrite arbitrary files via a symlink attack on a file in an image.

1 affected package

nova

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
nova
Show less packages