Vulnerabilities > CVE-2014-9623 - Resource Management Errors vulnerability in multiple products

047910
CVSS 0.0 - NONE
Attack vector
UNKNOWN
Attack complexity
UNKNOWN
Privileges required
UNKNOWN
Confidentiality impact
UNKNOWN
Integrity impact
UNKNOWN
Availability impact
UNKNOWN

Summary

OpenStack Glance 2014.2.x through 2014.2.1, 2014.1.3, and earlier allows remote authenticated users to bypass the storage quota and cause a denial of service (disk consumption) by deleting an image in the saving state.

Common Weakness Enumeration (CWE)

Redhat

advisories
  • rhsa
    idRHSA-2015:0644
  • rhsa
    idRHSA-2015:0837
  • rhsa
    idRHSA-2015:0838
rpms
  • openstack-glance-0:2014.2.2-1.el7ost
  • openstack-glance-doc-0:2014.2.2-1.el7ost
  • python-glance-0:2014.2.2-1.el7ost
  • python-glanceclient-1:0.14.2-2.el7ost
  • python-glanceclient-doc-1:0.14.2-2.el7ost
  • openstack-glance-0:2014.1.4-1.el7ost
  • openstack-glance-doc-0:2014.1.4-1.el7ost
  • python-glance-0:2014.1.4-1.el7ost
  • openstack-glance-0:2014.1.4-1.el6ost
  • openstack-glance-doc-0:2014.1.4-1.el6ost
  • python-glance-0:2014.1.4-1.el6ost