OpenStack Glance before 2015.1.1 (kilo) allows remote authenticated users to cause a denial of service (disk consumption) by repeatedly using the import task flow API to create images and then deleting them.
References
Link | Resource |
---|---|
http://lists.openstack.org/pipermail/openstack-announce/2015-July/000481.html | Patch Vendor Advisory |
http://www.securityfocus.com/bid/76068 | |
https://bugs.launchpad.net/glance/+bug/1454087 | Patch |
Configurations
History
No history.
Information
Published : 2015-08-14 18:59
Updated : 2016-12-03 03:09
NVD link : CVE-2015-3289
Mitre link : CVE-2015-3289
CVE.ORG link : CVE-2015-3289
JSON object : View
Products Affected
openstack
- glance
CWE
CWE-399
Resource Management Errors