CVEs (4)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
2Canonical Openstack4Icehouse JunoKilo+1 moreMay 6, 2026 Jun 25, 2015 N/A· v4 N/A· v3 6.8 MEDIUM· v2 OpenStack Cinder before 2014.1.5 (icehouse), 2014.2.x before 2014.2.4 (juno), and 2015.1.x before 2015.1.1 (kilo) allows remote authenticated users to read arbitrary files via a crafted qcow2 signature in an image to the...Show more |
1Openstack 2Icehouse Image Registry And Delivery Service (glance)May 6, 2026 Apr 27, 2014 N/A· v4 N/A· v3 6.0 MEDIUM· v2 The Sheepdog backend in OpenStack Image Registry and Delivery Service (Glance) 2013.2 before 2013.2.4 and icehouse before icehouse-rc2 allows remote authenticated users with permission to insert or modify an image to exe...Show more |
The Nova EC2 API security group implementation in OpenStack Compute (Nova) 2013.1 before 2013.2.4 and icehouse before icehouse-rc2 does not enforce RBAC policies for (1) add_rules, (2) remove_rules, (3) destroy, and othe...Show more |
1Openstack 4Compute GrizzlyHavana+1 moreApr 29, 2026 Feb 6, 2014 N/A· v4 N/A· v3 7.1 HIGH· v2 The i_create_images_and_backing (aka create_images_and_backing) method in libvirt driver in OpenStack Compute (Nova) Grizzly, Havana, and Icehouse, when using KVM live block migration, does not properly create all expect...Show more |