CVE-2013-7048
published 2014-01-23CVE-2013-7048: OpenStack Compute (Nova) Grizzly 2013.1.4, Havana 2013.2.1, and earlier uses world-writable and world-readable permissions for the temporary directory used to…
PriorityP46low3.3CVSS 2.0
AVLACMAuNCPIPAN
EPSS
0.47%
38.4th percentile
OpenStack Compute (Nova) Grizzly 2013.1.4, Havana 2013.2.1, and earlier uses world-writable and world-readable permissions for the temporary directory used to store live snapshots, which allows local users to read and modify live snapshots.
Affected
8 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | nova | < nova 2013.2.2 (bookworm) | nova 2013.2.2 (bookworm) |
| openstack | nova | >= 0 < 2013.2.2 | 2013.2.2 |
| openstack | nova | >= 0 < 2013.2.2 | 2013.2.2 |
| openstack | nova | >= 0 < 2013.2.2 | 2013.2.2 |
| openstack | nova | >= 0 < 2013.2.2 | 2013.2.2 |
| openstack | nova | >= 0 < 12.0.0a0 | 12.0.0a0 |
| openstack | nova | 2013.1 – 2013.1.4 | — |
| openstack | nova | 2013.2 – 2013.2.1 | — |
CVSS provenance
nvdv2.03.3LOWAV:L/AC:M/Au:N/C:P/I:P/A:N
osv3.3LOW
vendor_debian3.3LOW
vendor_redhat3.3LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
OSV
OpenStack Nova live snapshots use an insecure local directory
osv·2022-05-14
CVE-2013-7048 [LOW] OpenStack Nova live snapshots use an insecure local directory
OpenStack Nova live snapshots use an insecure local directory
OpenStack Compute (Nova) Grizzly 2013.1.4, Havana 2013.2.1, and earlier uses world-writable and world-readable permissions for the temporary directory used to store live snapshots, which allows local users to read and modify live snapshots.
GHSA
OpenStack Nova live snapshots use an insecure local directory
ghsa·2022-05-14
CVE-2013-7048 [LOW] OpenStack Nova live snapshots use an insecure local directory
OpenStack Nova live snapshots use an insecure local directory
OpenStack Compute (Nova) Grizzly 2013.1.4, Havana 2013.2.1, and earlier uses world-writable and world-readable permissions for the temporary directory used to store live snapshots, which allows local users to read and modify live snapshots.
OSV
CVE-2013-7048: OpenStack Compute (Nova) Grizzly 2013
osv·2014-01-23·CVSS 3.3
CVE-2013-7048 [LOW] CVE-2013-7048: OpenStack Compute (Nova) Grizzly 2013
OpenStack Compute (Nova) Grizzly 2013.1.4, Havana 2013.2.1, and earlier uses world-writable and world-readable permissions for the temporary directory used to store live snapshots, which allows local users to read and modify live snapshots.
Red Hat
Nova: insecure directory permissions in snapshots
vendor_redhat·2013-09-18·CVSS 3.3
CVE-2013-7048 [LOW] Nova: insecure directory permissions in snapshots
Nova: insecure directory permissions in snapshots
OpenStack Compute (Nova) Grizzly 2013.1.4, Havana 2013.2.1, and earlier uses world-writable and world-readable permissions for the temporary directory used to store live snapshots, which allows local users to read and modify live snapshots.
Debian
CVE-2013-7048: nova - OpenStack Compute (Nova) Grizzly 2013.1.4, Havana 2013.2.1, and earlier uses wor...
vendor_debian·2013·CVSS 3.3
CVE-2013-7048 [LOW] CVE-2013-7048: nova - OpenStack Compute (Nova) Grizzly 2013.1.4, Havana 2013.2.1, and earlier uses wor...
OpenStack Compute (Nova) Grizzly 2013.1.4, Havana 2013.2.1, and earlier uses world-writable and world-readable permissions for the temporary directory used to store live snapshots, which allows local users to read and modify live snapshots.
Scope: local
bookworm: resolved (fixed in 2013.2.2)
bullseye: resolved (fixed in 2013.2.2)
forky: resolved (fixed in 2013.2.2)
sid: resolved (fixed in 2013.2.2)
trixie: resolved (fixed in 2013.2.2)
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2013-7048 openstack-nova: Openstack Nova: insecure directory permissions in snapshots [epel-6]
bugzilla·2013-12-12·CVSS 3.3
CVE-2013-7048 [LOW] CVE-2013-7048 openstack-nova: Openstack Nova: insecure directory permissions in snapshots [epel-6]
CVE-2013-7048 openstack-nova: Openstack Nova: insecure directory permissions in snapshots [epel-6]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora EPEL.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, please use the bodhi submission link
noted in the next comment(s). This will include the bug IDs of this
tracking bug as well as the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
Bodhi notes field when available.
e
Bugzilla
CVE-2013-7048 Openstack Nova: insecure directory permissions in snapshots
bugzilla·2013-12-12·CVSS 3.3
CVE-2013-7048 [LOW] CVE-2013-7048 Openstack Nova: insecure directory permissions in snapshots
CVE-2013-7048 Openstack Nova: insecure directory permissions in snapshots
A vulnerability was discovered in OpenStack Nova, where the directories used to temporarily store live snapshots on Nova compute nodes were writeable to all local users.
The issue has said to be surfaced due to a previous fix (https://review.openstack.org/gitweb?p=openstack%2Fnova.git;a=commitdiff;h=46de2d1e2d0abd6fdcd4da13facaf3225c721f5e), where the temporary directory was given 777 permissions, which could allow every user on the whole system to write there. A local attacker with shell access on compute nodes could therefore read and modify the contents of live snapshots before those are uploaded to the image service.
References:
http://seclists.org/oss-sec/2013/q4/474
https://bugs.launchpad.net/nova/+bug/12270
Bugzilla
CVE-2013-7048 openstack-nova: Openstack Nova: insecure directory permissions in snapshots [fedora-all]
bugzilla·2013-12-12·CVSS 3.3
CVE-2013-7048 [LOW] CVE-2013-7048 openstack-nova: Openstack Nova: insecure directory permissions in snapshots [fedora-all]
CVE-2013-7048 openstack-nova: Openstack Nova: insecure directory permissions in snapshots [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, please use the bodhi submission link
noted in the next comment(s). This will include the bug IDs of this
tracking bug as well as the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
Bodhi notes field when available.
Pl
2014-01-23
Published