CVE-2013-2256

EPSS 0.47%

OpenStack Compute (Nova) allows remote authenticated users to obtain sensitive information

發布日:2022/5/14修改日:2024/12/8
也稱為:GHSA-5mj6-643f-2g85DEBIAN-CVE-2013-2256

描述

OpenStack Compute (Nova) before 2013.1.3 and Havana before havana-2 does not properly enforce the os-flavor-access:is_public property, which allows remote authenticated users to obtain sensitive information (flavor properties), boot arbitrary flavors, and possibly have other unspecified impacts by guessing the flavor id.

受影響套件(2)

參考連結(9)