← Back

CVE-2014-2573

nvd nist
Published: Mar 25, 2014Modified: May 6, 2026

JSON object

Loading...
2.3
Vector
AV:A/AC:M/Au:S/C:N/I:N/A:P
Exploitability: 4.4 / Impact: 2.9
Source: NVD

Description

The VMWare driver in OpenStack Compute (Nova) 2013.2 through 2013.2.2 does not properly put VMs into RESCUE status, which allows remote authenticated users to bypass the quota limit and cause a denial of service (resource consumption) by requesting the VM be put into rescue and then deleting the image.

Affected (3)

Products: Openstack: Compute
1 product
Compute
Configuration A
3 vulnerable
Vulnerable SoftwareAffected Versions
Openstack
Version 2013.2.1
Version 2013.2.2
Version 2013.2

Related CWEs

References (8)

Source: cve@mitre.org
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.