CVE-2012-0030
published 2012-01-13CVE-2012-0030: Nova 2011.3 and Essex, when using the OpenStack API, allows remote authenticated users to bypass access restrictions for tenants of other users via an OSAPI…
PriorityP425medium4.9CVSS 2.0
AVNACMAuSCNIPAP
EPSS
1.76%
75.5th percentile
Nova 2011.3 and Essex, when using the OpenStack API, allows remote authenticated users to bypass access restrictions for tenants of other users via an OSAPI request with a modified project_id URI parameter.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | nova | < nova 2012.1~rc1-1 (bookworm) | nova 2012.1~rc1-1 (bookworm) |
| openstack | nova | — | — |
| openstack | nova | >= 0 < 2012.1~rc1-1 | 2012.1~rc1-1 |
| openstack | nova | >= 0 < 2012.1~rc1-1 | 2012.1~rc1-1 |
| openstack | nova | >= 0 < 2012.1~rc1-1 | 2012.1~rc1-1 |
| openstack | nova | >= 0 < 2012.1~rc1-1 | 2012.1~rc1-1 |
CVSS provenance
nvdv2.04.9MEDIUMAV:N/AC:M/Au:S/C:N/I:P/A:P
osv4.9MEDIUM
vendor_debian4.9MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
Nova vulnerability
vendor_ubuntu·2012-01-11
CVE-2012-0030 Nova vulnerability
Title: Nova vulnerability
Summary: Nova would allow unintended access to resources over the network.
Nachi Ueno, Rohit Karajgi, and Venkatesan Ravikumar discovered that when
Nova is configured to use the OpenStack API, it would not correctly enforce
access controls on certain incoming requests. A remote authenticated
attacker could exploit this to change resources of arbitrary tenants.
Instructions: In general, a standard system update will make all the necessary changes.
Debian
CVE-2012-0030: nova - Nova 2011.3 and Essex, when using the OpenStack API, allows remote authenticated...
vendor_debian·2012·CVSS 4.9
CVE-2012-0030 [MEDIUM] CVE-2012-0030: nova - Nova 2011.3 and Essex, when using the OpenStack API, allows remote authenticated...
Nova 2011.3 and Essex, when using the OpenStack API, allows remote authenticated users to bypass access restrictions for tenants of other users via an OSAPI request with a modified project_id URI parameter.
Scope: local
bookworm: resolved (fixed in 2012.1~rc1-1)
bullseye: resolved (fixed in 2012.1~rc1-1)
forky: resolved (fixed in 2012.1~rc1-1)
sid: resolved (fixed in 2012.1~rc1-1)
trixie: resolved (fixed in 2012.1~rc1-1)
GHSA
GHSA-3c45-vg2q-j67q: Nova 2011
ghsa_unreviewed·2022-05-04
CVE-2012-0030 [MEDIUM] GHSA-3c45-vg2q-j67q: Nova 2011
Nova 2011.3 and Essex, when using the OpenStack API, allows remote authenticated users to bypass access restrictions for tenants of other users via an OSAPI request with a modified project_id URI parameter.
OSV
CVE-2012-0030: Nova 2011
osv·2012-01-13·CVSS 4.9
CVE-2012-0030 [MEDIUM] CVE-2012-0030: Nova 2011
Nova 2011.3 and Essex, when using the OpenStack API, allows remote authenticated users to bypass access restrictions for tenants of other users via an OSAPI request with a modified project_id URI parameter.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2012-0030 openstack-nova: Tenant bypass by authenticated users using OpenStack API
bugzilla·2012-01-06·CVSS 4.9
CVE-2012-0030 [MEDIUM] CVE-2012-0030 openstack-nova: Tenant bypass by authenticated users using OpenStack API
CVE-2012-0030 openstack-nova: Tenant bypass by authenticated users using OpenStack API
Nachi Ueno (NTT PF lab), Rohit Karajgi (Vertex) and Venkatesan Ravikumar
(HP) discovered a vulnerability in Nova API nodes handling of incoming
requests. An authenticated user may craft malicious commands to affect
resources on tenants he is not a member of, potentially leading to
incorrect billing, quota escaping or compromise of computing resources
created by a third-party. Only setups allowing the OpenStack API are
affected.
We expect to have patch for our Diablo version released in F16 and EPEL,
early next week.
A CVE number is pending.
Proposed public disclosure date/time:
Wednesday, January 11, 2012, 1500UTC
Discussion:
Created attachment 551231
proposed upstream patch to fix the flaw
This i
arXiv
ReposVul: A Repository-Level High-Quality Vulnerability Dataset
arxiv_fulltext·2024-02-08
ReposVul: A Repository-Level High-Quality Vulnerability Dataset
: A Repository-Level High-Quality Vulnerability Dataset
Xinchen Wang^
Harbin Institute of Technology,
Shenzhen
China
[email protected]
Ruida Hu^
Harbin Institute of Technology,
Shenzhen
China
[email protected]
Cuiyun Gao^
Harbin Institute of Technology,
Shenzhen
China
[email protected]
Xin-Cheng Wen
Harbin Institute of Technology,
Shenzhen
China
[email protected]
Yujia Chen
Harbin Institute of Technology,
Shenzhen
China
[email protected]
Qing Liao
Harbin Institute of Technology,
Shenzhen
China
[email protected]
^ These authors contribute to the work equally and are co-first authors of the paper.
^ Corresponding author. The author is also affiliated with Peng Cheng Laboratory and Guangdong Provincial Key Laboratory of Novel Security Intelligence T
http://secunia.com/advisories/47543http://www.securityfocus.com/bid/51370http://www.ubuntu.com/usn/USN-1326-1https://exchange.xforce.ibmcloud.com/vulnerabilities/72296https://github.com/openstack/nova/commit/3d4ffb64f1e18117240c26809788528979e3bd15#diff-0https://lists.launchpad.net/openstack/msg06648.htmlhttp://secunia.com/advisories/47543http://www.securityfocus.com/bid/51370http://www.ubuntu.com/usn/USN-1326-1https://exchange.xforce.ibmcloud.com/vulnerabilities/72296https://github.com/openstack/nova/commit/3d4ffb64f1e18117240c26809788528979e3bd15#diff-0https://lists.launchpad.net/openstack/msg06648.html
2012-01-13
Published