Vulnerabilities > Redhat > Openstack > Medium

DATE CVE VULNERABILITY TITLE RISK
2015-01-07 CVE-2014-9493 Permissions, Privileges, and Access Controls vulnerability in multiple products
The V2 API in OpenStack Image Registry and Delivery Service (Glance) before 2014.2.2 and 2014.1.4 allows remote authenticated users to read or delete arbitrary files via a full pathname in a file: URL in the image location property.
network
low complexity
redhat openstack CWE-264
5.5
2014-10-31 CVE-2014-8333 Resource Management Errors vulnerability in multiple products
The VMware driver in OpenStack Compute (Nova) before 2014.1.4 allows remote authenticated users to cause a denial of service (disk consumption) by deleting an instance in the resize state.
network
low complexity
redhat openstack CWE-399
4.0
2014-08-19 CVE-2014-4615 Information Exposure vulnerability in multiple products
The notifier middleware in OpenStack PyCADF 0.5.0 and earlier, Telemetry (Ceilometer) 2013.2 before 2013.2.4 and 2014.x before 2014.1.2, Neutron 2014.x before 2014.1.2 and Juno before Juno-2, and Oslo allows remote authenticated users to obtain X_AUTH_TOKEN values by reading the message queue (v2/meters/http.request).
network
low complexity
redhat canonical openstack CWE-200
5.0
2014-06-02 CVE-2013-6470 Improper Authentication vulnerability in Redhat Openstack 4.0
The default configuration in the standalone controller quickstack manifest in openstack-foreman-installer, as used in Red Hat Enterprise Linux OpenStack Platform 4.0, disables authentication for Qpid, which allows remote attackers to gain access by connecting to Qpid.
network
low complexity
redhat CWE-287
5.0
2014-04-17 CVE-2014-0071 Permissions, Privileges, and Access Controls vulnerability in Redhat Openstack 4.0
PackStack in Red Hat OpenStack 4.0 does not enforce the default security groups when deployed to Neutron, which allows remote attackers to bypass intended access restrictions and make unauthorized connections.
network
low complexity
redhat CWE-264
6.4
2014-02-06 CVE-2013-6393 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in multiple products
The yaml_parser_scan_tag_uri function in scanner.c in LibYAML before 0.1.5 performs an incorrect cast, which allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via crafted tags in a YAML document, which triggers a heap-based buffer overflow.
6.8
2014-02-02 CVE-2013-6491 Cryptographic Issues vulnerability in multiple products
The python-qpid client (common/rpc/impl_qpid.py) in OpenStack Oslo before 2013.2 does not enforce SSL connections when qpid_protocol is set to ssl, which allows remote attackers to obtain sensitive information by sniffing the network.
4.3
2013-12-14 CVE-2013-6391 Improper Privilege Management vulnerability in multiple products
The ec2tokens API in OpenStack Identity (Keystone) before Havana 2013.2.1 and Icehouse before icehouse-2 does not return a trust-scoped token when one is received, which allows remote trust users to gain privileges by generating EC2 credentials from a trust-scoped token and using them in an ec2tokens API request.
5.8
2013-10-29 CVE-2013-4185 Cryptographic Issues vulnerability in multiple products
Algorithmic complexity vulnerability in OpenStack Compute (Nova) before 2013.1.3 and Havana before havana-3 does not properly handle network source security group policy updates, which allows remote authenticated users to cause a denial of service (nova-network consumption) via a large number of server-creation operations, which triggers a large number of update requests.
network
low complexity
openstack redhat CWE-310
4.0