Vulnerabilities > CVE-2022-4134 - Inclusion of Functionality from Untrusted Control Sphere vulnerability in multiple products

047910
CVSS 2.8 - LOW
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
LOW
Confidentiality impact
NONE
Integrity impact
LOW
Availability impact
NONE
local
low complexity
openstack
redhat
CWE-829

Summary

A flaw was found in openstack-glance. This issue could allow a remote, authenticated attacker to tamper with images, compromising the integrity of virtual machines created using these modified images.

Vulnerable Configurations

Part Description Count
Application
Openstack
1
Application
Redhat
4