OpenStack Compute (Nova) Denial Of Service Vulnerability
BID:52831
Info
OpenStack Compute (Nova) Denial Of Service Vulnerability
| Bugtraq ID: | 52831 |
| Class: | Input Validation Error |
| CVE: |
CVE-2012-1585 |
| Remote: | Yes |
| Local: | No |
| Published: | Mar 30 2012 12:00AM |
| Updated: | Apr 13 2015 09:52PM |
| Credit: | Dan Prince |
| Vulnerable: |
Jesse Andrews OpenStack Compute (Nova) 2011.3 |
| Not Vulnerable: | |
Discussion
OpenStack Compute (Nova) Denial Of Service Vulnerability
OpenStack Compute (Nova) is prone to a denial-of-service vulnerability.
Remote attackers can exploit this issue to cause the application to crash, denying service to legitimate users.
OpenStack Compute (Nova) 2011.3 is vulnerable; other versions may also be affected.
OpenStack Compute (Nova) is prone to a denial-of-service vulnerability.
Remote attackers can exploit this issue to cause the application to crash, denying service to legitimate users.
OpenStack Compute (Nova) 2011.3 is vulnerable; other versions may also be affected.
Exploit / POC
OpenStack Compute (Nova) Denial Of Service Vulnerability
An attacker can use readily available network utilities to exploit this issue.
An attacker can use readily available network utilities to exploit this issue.
Solution / Fix
OpenStack Compute (Nova) Denial Of Service Vulnerability
Solution:
Updates are available. Please see the references for more information.
Solution:
Updates are available. Please see the references for more information.
References
OpenStack Compute (Nova) Denial Of Service Vulnerability
References:
References:
- OpenStack Compute (Nova) Homepage (Jesse Andrews)
- OpenStack Image Registry and Delivery Service (Glance) (Jay Pipes)