Vulnerabilities > Openstack > Grizzly

DATE CVE VULNERABILITY TITLE RISK
2013-03-22 CVE-2013-0335 Permissions, Privileges, and Access Controls vulnerability in multiple products
OpenStack Compute (Nova) Grizzly, Folsom (2012.2), and Essex (2012.1) allows remote authenticated users to gain access to a VM in opportunistic circumstances by using the VNC token for a deleted VM that was bound to the same VNC port.
6.0
2012-12-26 CVE-2012-5625 Information Exposure vulnerability in Openstack Folsom and Grizzly
OpenStack Compute (Nova) Folsom before 2012.2.2 and Grizzly, when using libvirt and LVM backed instances, does not properly clear physical volume (PV) content when reallocating for instances, which allows attackers to obtain sensitive information by reading the memory of the previous logical volume (LV).
network
openstack CWE-200
4.3