Known Vulnerabilities for Cinder by Openstack
Listed below are 8 of the newest known vulnerabilities associated with "Cinder" by "Openstack".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2022-47951 json | An issue was discovered in OpenStack Cinder before 19.1.2, 20.x before 20.0.2, and 21.0.0; Glance before 23.0.1, 24.x before ... | 5.7 - MEDIUM | 2023-01-26 | 2023-02-06 |
| CVE-2017-15139 json | A vulnerability was found in openstack-cinder releases up to and including Queens, allowing newly created volumes in certain ... | 7.5 - HIGH | 2018-08-27 | 2023-02-03 |
| CVE-2015-5162 json | The image parser in OpenStack Cinder 7.0.2 and 8.0.0 through 8.1.1; Glance before 11.0.1 and 12.0.0; and Nova before 12.0.4 a... | 7.5 - HIGH | 2016-10-07 | 2023-02-13 |
| CVE-2014-7231 json | The strutils.mask_password function in the OpenStack Oslo utility library, Cinder, Nova, and Trove before 2013.2.4 and 2014.1... | 2.1 - LOW | 2014-10-08 | 2018-11-16 |
| CVE-2014-7230 json | The processutils.execute function in OpenStack oslo-incubator, Cinder, Nova, and Trove before 2013.2.4 and 2014.1 before 2014... | 2.1 - LOW | 2014-10-08 | 2018-11-16 |
| CVE-2014-3641 json | The (1) GlusterFS and (2) Linux Smbfs drivers in OpenStack Cinder before 2014.1.3 allows remote authenticated users to obtain... | 4 - MEDIUM | 2014-10-08 | 2023-02-13 |
| CVE-2013-4202 json | The (1) backup (api/contrib/backups.py) and (2) volume transfer (contrib/volume_transfer.py) APIs in OpenStack Cinder Grizzly... | 4.3 - MEDIUM | 2013-09-16 | 2023-11-07 |
| CVE-2013-4183 json | The clear_volume function in LVMVolumeDriver driver in OpenStack Cinder 2013.1.1 through 2013.1.2 does not properly clear dat... | 2.1 - LOW | 2013-09-16 | 2013-10-31 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Openstack | Cinder | 9.1.4 | |||
| Application | Openstack | Cinder | 9.1.3 | |||
| Operating System | Openstack | Cinder | 9.1.2 | |||
| Operating System | Openstack | Cinder | 9.1.1 | |||
| Operating System | Openstack | Cinder | 9.1.0 | |||
| Application | Openstack | Cinder | 9.0.0 | |||
| Application | Openstack | Cinder | 9.0.0 | |||
| Application | Openstack | Cinder | 9.0.0 | |||
| Application | Openstack | Cinder | 9.0.0 | |||
| Application | Openstack | Cinder | 9.0.0 | |||
| Application | Openstack | Cinder | 9.0.0 | |||
| Operating System | Openstack | Cinder | 9.0.0 | |||
| Operating System | Openstack | Cinder | 8.1.1-11 | |||
| Operating System | Openstack | Cinder | 8.1.1 | |||
| Operating System | Openstack | Cinder | 8.1.0 | |||
| Application | Openstack | Cinder | 8.0.0 | |||
| Application | Openstack | Cinder | 8.0.0 | |||
| Application | Openstack | Cinder | 8.0.0 | |||
| Application | Openstack | Cinder | 8.0.0 | |||
| Application | Openstack | Cinder | 8.0.0 |