Vulnerabilities > Openstack

DATE CVE VULNERABILITY TITLE RISK
2014-01-23 CVE-2013-7048 Permissions, Privileges, and Access Controls vulnerability in Openstack Nova
OpenStack Compute (Nova) Grizzly 2013.1.4, Havana 2013.2.1, and earlier uses world-writable and world-readable permissions for the temporary directory used to store live snapshots, which allows local users to read and modify live snapshots.
3.3
2014-01-23 CVE-2014-0006 Information Exposure vulnerability in Openstack Swift
The TempURL middleware in OpenStack Object Storage (Swift) 1.4.6 through 1.8.0, 1.9.0 through 1.10.0, and 1.11.0 allows remote attackers to obtain secret URLs by leveraging an object name and a timing side-channel attack.
network
openstack CWE-200
4.3
2014-01-07 CVE-2013-6419 Information Exposure vulnerability in Openstack Havana 2013.2.1/Havana1
Interaction error in OpenStack Nova and Neutron before Havana 2013.2.1 and icehouse-1 does not validate the instance ID of the tenant making a request, which allows remote tenants to obtain sensitive metadata by spoofing the device ID that is bound to a port, which is not properly handled by (1) api/metadata/handler.py in Nova and (2) the neutron-metadata-agent (agent/metadata/agent.py) in Neutron.
network
low complexity
openstack CWE-200
5.0
2013-12-27 CVE-2013-2030 Permissions, Privileges, and Access Controls vulnerability in Openstack products
keystone/middleware/auth_token.py in OpenStack Nova Folsom, Grizzly, and Havana uses an insecure temporary directory for storing signing certificates, which allows local users to spoof servers by pre-creating this directory, which is reused by Nova, as demonstrated using /tmp/keystone-signing-nova on Fedora.
local
low complexity
openstack CWE-264
2.1
2013-12-14 CVE-2013-6428 Permissions, Privileges, and Access Controls vulnerability in Openstack Heat 2013.2/5.0.0
The ReST API in OpenStack Orchestration API (Heat) before Havana 2013.2.1 and Icehouse before icehouse-2 allows remote authenticated users to bypass the tenant scoping restrictions via a modified tenant_id in the request path.
network
low complexity
openstack CWE-264
4.0
2013-12-14 CVE-2013-6426 Permissions, Privileges, and Access Controls vulnerability in Openstack Heat 2013.2/5.0.0
The cloudformation-compatible API in OpenStack Orchestration API (Heat) before Havana 2013.2.1 and Icehouse before icehouse-2 does not properly enforce policy rules, which allows local in-instance users to bypass intended access restrictions and (1) create a stack via the CreateStack method or (2) update a stack via the UpdateStack method.
network
low complexity
openstack CWE-264
4.0
2013-12-14 CVE-2013-6391 Improper Privilege Management vulnerability in multiple products
The ec2tokens API in OpenStack Identity (Keystone) before Havana 2013.2.1 and Icehouse before icehouse-2 does not return a trust-scoped token when one is received, which allows remote trust users to gain privileges by generating EC2 credentials from a trust-scoped token and using them in an ec2tokens API request.
5.8
2013-11-23 CVE-2013-6384 Information Exposure Through LOG Files vulnerability in Openstack Ceilometer
(1) impl_db2.py and (2) impl_mongodb.py in OpenStack Ceilometer 2013.2 and earlier, when the logging level is set to INFO, logs the connection string from ceilometer.conf, which allows local users to obtain sensitive information (the DB2 or MongoDB password) by reading the log file.
1.9
2013-11-23 CVE-2013-6858 Cross-Site Scripting vulnerability in multiple products
Multiple cross-site scripting (XSS) vulnerabilities in OpenStack Dashboard (Horizon) 2013.2 and earlier allow local users to inject arbitrary web script or HTML via an instance name to (1) "Volumes" or (2) "Network Topology" page.
4.3
2013-11-23 CVE-2013-4354 Improper Input Validation vulnerability in Openstack Image Registry and Delivery Service (Glance)
The API before 2.1 in OpenStack Image Registry and Delivery Service (Glance) makes it easier for local users to inject images into arbitrary tenants by adding the tenant as a member of the image.
local
low complexity
openstack CWE-20
2.1