CVE-2015-1195
published 2015-01-21CVE-2015-1195: The V2 API in OpenStack Image Registry and Delivery Service (Glance) before 2014.1.4 and 2014.2.x before 2014.2.2 allows remote authenticated users to read or…
PriorityP433medium6.5CVSS 2.0
AVNACLAuSCPIPAP
EPSS
2.77%
84.6th percentile
The V2 API in OpenStack Image Registry and Delivery Service (Glance) before 2014.1.4 and 2014.2.x before 2014.2.2 allows remote authenticated users to read or delete arbitrary files via a full pathname in a filesystem: URL in the image location property. NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-9493.
Affected
8 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | glance | < glance 2014.1.3-11 (bookworm) | glance 2014.1.3-11 (bookworm) |
| glance_project | glance | >= 0 < 2014.1.3-11 | 2014.1.3-11 |
| glance_project | glance | >= 0 < 2014.1.3-11 | 2014.1.3-11 |
| glance_project | glance | >= 0 < 2014.1.3-11 | 2014.1.3-11 |
| glance_project | glance | >= 0 < 2014.1.3-11 | 2014.1.3-11 |
| glance_project | glance | >= 0 < 11.0.0a0 | 11.0.0a0 |
| openstack | image_registry_and_delivery_service | >= 2014.1 < 2014.1.4 | 2014.1.4 |
| openstack | image_registry_and_delivery_service | >= 2014.2 < 2014.2.2 | 2014.2.2 |
CVSS provenance
nvdv2.06.5MEDIUMAV:N/AC:L/Au:S/C:P/I:P/A:P
ghsa5.5MEDIUM
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
openstack-glance: unrestricted path traversal flaw (incomplete fix for CVE-2014-9493) (OSSA 2015-002)
vendor_redhat·2015-01-12·CVSS 5.5
CVE-2015-1195 [MEDIUM] CWE-22 openstack-glance: unrestricted path traversal flaw (incomplete fix for CVE-2014-9493) (OSSA 2015-002)
openstack-glance: unrestricted path traversal flaw (incomplete fix for CVE-2014-9493) (OSSA 2015-002)
The V2 API in OpenStack Image Registry and Delivery Service (Glance) before 2014.1.4 and 2014.2.x before 2014.2.2 allows remote authenticated users to read or delete arbitrary files via a full pathname in a filesystem: URL in the image location property. NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-9493.
It was discovered that the fix for CVE-2014-9493 was incomplete: an authenticated user could use a path traversal flaw in glance to download or delete any file on the glance server that is accessible to the glance process user. Note that only setups using the OpenStack Image V2 API were affected by this flaw.
Statement: The fix for CVE-2014-9493 is complete
Debian
CVE-2015-1195: glance - The V2 API in OpenStack Image Registry and Delivery Service (Glance) before 2014...
vendor_debian·2015·CVSS 5.5
CVE-2015-1195 [MEDIUM] CVE-2015-1195: glance - The V2 API in OpenStack Image Registry and Delivery Service (Glance) before 2014...
The V2 API in OpenStack Image Registry and Delivery Service (Glance) before 2014.1.4 and 2014.2.x before 2014.2.2 allows remote authenticated users to read or delete arbitrary files via a full pathname in a filesystem: URL in the image location property. NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-9493.
Scope: local
bookworm: resolved (fixed in 2014.1.3-11)
bullseye: resolved (fixed in 2014.1.3-11)
forky: resolved (fixed in 2014.1.3-11)
sid: resolved (fixed in 2014.1.3-11)
trixie: resolved (fixed in 2014.1.3-11)
GHSA
OpenStack Glance v2 API unrestricted path traversal through filesystem:// scheme
ghsa·2022-05-14·CVSS 5.5
CVE-2015-1195 [MEDIUM] CWE-22 OpenStack Glance v2 API unrestricted path traversal through filesystem:// scheme
OpenStack Glance v2 API unrestricted path traversal through filesystem:// scheme
The V2 API in OpenStack Image Registry and Delivery Service (Glance) before 2014.1.4 and 2014.2.x before 2014.2.2 allows remote authenticated users to read or delete arbitrary files via a full pathname in a `filesystem://` URL in the image location property. NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-9493.
OSV
OpenStack Glance v2 API unrestricted path traversal through filesystem:// scheme
osv·2022-05-14·CVSS 5.5
CVE-2015-1195 [MEDIUM] OpenStack Glance v2 API unrestricted path traversal through filesystem:// scheme
OpenStack Glance v2 API unrestricted path traversal through filesystem:// scheme
The V2 API in OpenStack Image Registry and Delivery Service (Glance) before 2014.1.4 and 2014.2.x before 2014.2.2 allows remote authenticated users to read or delete arbitrary files via a full pathname in a `filesystem://` URL in the image location property. NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-9493.
OSV
CVE-2015-1195: The V2 API in OpenStack Image Registry and Delivery Service (Glance) before 2014
osv·2015-01-21·CVSS 5.5
CVE-2015-1195 [MEDIUM] CVE-2015-1195: The V2 API in OpenStack Image Registry and Delivery Service (Glance) before 2014
The V2 API in OpenStack Image Registry and Delivery Service (Glance) before 2014.1.4 and 2014.2.x before 2014.2.2 allows remote authenticated users to read or delete arbitrary files via a full pathname in a filesystem: URL in the image location property. NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-9493.
No detection rules found.
No public exploits indexed.
http://lists.openstack.org/pipermail/openstack-announce/2015-January/000325.htmlhttp://secunia.com/advisories/62169http://www.openwall.com/lists/oss-security/2015/01/15/2http://www.openwall.com/lists/oss-security/2015/01/18/5http://www.oracle.com/technetwork/topics/security/bulletinapr2015-2511959.htmlhttp://www.securityfocus.com/bid/71976https://bugs.launchpad.net/ossa/+bug/1408663http://lists.openstack.org/pipermail/openstack-announce/2015-January/000325.htmlhttp://secunia.com/advisories/62169http://www.openwall.com/lists/oss-security/2015/01/15/2http://www.openwall.com/lists/oss-security/2015/01/18/5http://www.oracle.com/technetwork/topics/security/bulletinapr2015-2511959.htmlhttp://www.securityfocus.com/bid/71976https://bugs.launchpad.net/ossa/+bug/1408663
2015-01-21
Published