ossa/ossa/OSSA-2013-019.yaml

63 lines
1.4 KiB
YAML

date: 2013-08-06
id: OSSA-2013-019
title: 'Resource limit circumvention in Nova private flavors'
description: 'hzrandd from NetEase reported a resource limit circumvention vulnerability
in Nova''s handling of private flavors. Any tenant is able to show and boot any
other tenant''s private flavors by guessing a flavor ID. This not only exposes the
flavor''s name, memory and disk size, swap allocation, VCPU count and similar flavor
properties, but potentially allows circumvention of any resource limits enforced
through the os-flavor-access:is_public property.'
reference: http://lists.openstack.org/pipermail/openstack-announce/2013-August/000126.html
affected-products:
- product: nova
version: All versions
vulnerabilities:
- cve-id: CVE-2013-2256
impact-assessment:
source: 'Red Hat Product Security'
rating: moderate
assessment:
type: CVSS2
score: 5.5
detail: AV:N/AC:L/Au:S/C:P/I:N/A:P
classification:
source: 'Red Hat Product Security'
type: CWE
detail: TODO
reporters:
- name: hzrandd
affiliation: NetEase
reported:
- CVE-2013-2256
issues:
links:
- https://launchpad.net/bugs/1194093
type: launchpad
reviews:
havana:
- https://review.openstack.org/#/c/34963
grizzly:
- https://review.openstack.org/#/c/37992
folsom:
- https://review.openstack.org/#/c/38318
type: gerrit