CVE-2011-4076
published 2019-11-26CVE-2011-4076: OpenStack Nova before 2012.1 allows someone with access to an EC2_ACCESS_KEY (equivalent to a username) to obtain the EC2_SECRET_KEY (equivalent to a…
PriorityP431medium5.9CVSS 3.1
AVNACHPRNUINSUCHINAN
EPSS
1.45%
70.4th percentile
OpenStack Nova before 2012.1 allows someone with access to an EC2_ACCESS_KEY (equivalent to a username) to obtain the EC2_SECRET_KEY (equivalent to a password). Exposing the EC2_ACCESS_KEY via http or tools that allow man-in-the-middle over https could allow an attacker to easily obtain the EC2_SECRET_KEY. An attacker could also presumably brute force values for EC2_ACCESS_KEY.
Affected
8 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | nova | < nova 2012.1~e1-1 (bookworm) | nova 2012.1~e1-1 (bookworm) |
| nova | nova | — | — |
| openstack | nova | >= 0 < 2012.1~e1-1 | 2012.1~e1-1 |
| openstack | nova | >= 0 < 2012.1~e1-1 | 2012.1~e1-1 |
| openstack | nova | >= 0 < 2012.1~e1-1 | 2012.1~e1-1 |
| openstack | nova | >= 0 < 2012.1~e1-1 | 2012.1~e1-1 |
| openstack | nova | >= 0 < 12.0.0a0 | 12.0.0a0 |
| openstack | nova | >= 2010.1 < 2012.1 | 2012.1 |
CVSS provenance
nvdv3.15.9MEDIUMCVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N
nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:P/I:N/A:N
osv5.9MEDIUM
vendor_debian5.9MEDIUM
vendor_redhat5.9MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
OpenStack Nova Exposure of Sensitive Information to an Unauthorized Actor
ghsa·2022-04-22
CVE-2011-4076 [MEDIUM] CWE-200 OpenStack Nova Exposure of Sensitive Information to an Unauthorized Actor
OpenStack Nova Exposure of Sensitive Information to an Unauthorized Actor
OpenStack Nova before 2012.1 allows someone with access to an EC2_ACCESS_KEY (equivalent to a username) to obtain the EC2_SECRET_KEY (equivalent to a password). Exposing the EC2_ACCESS_KEY via http or tools that allow man-in-the-middle over https could allow an attacker to easily obtain the EC2_SECRET_KEY. An attacker could also presumably brute force values for EC2_ACCESS_KEY.
OSV
OpenStack Nova Exposure of Sensitive Information to an Unauthorized Actor
osv·2022-04-22
CVE-2011-4076 [MEDIUM] OpenStack Nova Exposure of Sensitive Information to an Unauthorized Actor
OpenStack Nova Exposure of Sensitive Information to an Unauthorized Actor
OpenStack Nova before 2012.1 allows someone with access to an EC2_ACCESS_KEY (equivalent to a username) to obtain the EC2_SECRET_KEY (equivalent to a password). Exposing the EC2_ACCESS_KEY via http or tools that allow man-in-the-middle over https could allow an attacker to easily obtain the EC2_SECRET_KEY. An attacker could also presumably brute force values for EC2_ACCESS_KEY.
OSV
CVE-2011-4076: OpenStack Nova before 2012
osv·2019-11-26·CVSS 5.9
CVE-2011-4076 [MEDIUM] CVE-2011-4076: OpenStack Nova before 2012
OpenStack Nova before 2012.1 allows someone with access to an EC2_ACCESS_KEY (equivalent to a username) to obtain the EC2_SECRET_KEY (equivalent to a password). Exposing the EC2_ACCESS_KEY via http or tools that allow man-in-the-middle over https could allow an attacker to easily obtain the EC2_SECRET_KEY. An attacker could also presumably brute force values for EC2_ACCESS_KEY.
Debian
CVE-2011-4076: nova - OpenStack Nova before 2012.1 allows someone with access to an EC2_ACCESS_KEY (eq...
vendor_debian·2011·CVSS 5.9
CVE-2011-4076 [MEDIUM] CVE-2011-4076: nova - OpenStack Nova before 2012.1 allows someone with access to an EC2_ACCESS_KEY (eq...
OpenStack Nova before 2012.1 allows someone with access to an EC2_ACCESS_KEY (equivalent to a username) to obtain the EC2_SECRET_KEY (equivalent to a password). Exposing the EC2_ACCESS_KEY via http or tools that allow man-in-the-middle over https could allow an attacker to easily obtain the EC2_SECRET_KEY. An attacker could also presumably brute force values for EC2_ACCESS_KEY.
Scope: local
bookworm: resolved (fixed in 2012.1~e1-1)
bullseye: resolved (fixed in 2012.1~e1-1)
forky: resolved (fixed in 2012.1~e1-1)
sid: resolved (fixed in 2012.1~e1-1)
trixie: resolved (fixed in 2012.1~e1-1)
Red Hat
openstack-nova: EC2 API password leak
vendor_redhat·CVSS 5.9
CVE-2011-4076 [MEDIUM] openstack-nova: EC2 API password leak
openstack-nova: EC2 API password leak
OpenStack Nova before 2012.1 allows someone with access to an EC2_ACCESS_KEY (equivalent to a username) to obtain the EC2_SECRET_KEY (equivalent to a password). Exposing the EC2_ACCESS_KEY via http or tools that allow man-in-the-middle over https could allow an attacker to easily obtain the EC2_SECRET_KEY. An attacker could also presumably brute force values for EC2_ACCESS_KEY.
No detection rules found.
No public exploits indexed.
https://access.redhat.com/security/cve/cve-2011-4076https://bugs.launchpad.net/nova/+bug/868360https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2011-4076https://security-tracker.debian.org/tracker/CVE-2011-4076https://www.openwall.com/lists/oss-security/2011/10/25/4https://access.redhat.com/security/cve/cve-2011-4076https://bugs.launchpad.net/nova/+bug/868360https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2011-4076https://security-tracker.debian.org/tracker/CVE-2011-4076https://www.openwall.com/lists/oss-security/2011/10/25/4
2019-11-26
Published