CVE-2015-3280
published 2015-10-26CVE-2015-3280: OpenStack Compute (nova) before 2014.2.4 (juno) and 2015.1.x before 2015.1.2 (kilo) does not properly delete instances from compute nodes, which allows remote…
PriorityP428medium6.8CVSS 2.0
AVNACLAuSCNINAC
EPSS
3.35%
87.4th percentile
OpenStack Compute (nova) before 2014.2.4 (juno) and 2015.1.x before 2015.1.2 (kilo) does not properly delete instances from compute nodes, which allows remote authenticated users to cause a denial of service (disk consumption) by deleting instances while in the resize state.
Affected
16 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | nova | < nova 1:12.0.0-2 (bookworm) | nova 1:12.0.0-2 (bookworm) |
| debian | nova | < nova 2:13.1.0-1 (bookworm) | nova 2:13.1.0-1 (bookworm) |
| openstack | compute | — | — |
| openstack | nova | >= 0 < 1:12.0.0-2 | 1:12.0.0-2 |
| openstack | nova | >= 0 < 2:13.1.0-1 | 2:13.1.0-1 |
| openstack | nova | >= 0 < 1:12.0.0-2 | 1:12.0.0-2 |
| openstack | nova | >= 0 < 2:13.1.0-1 | 2:13.1.0-1 |
| openstack | nova | >= 0 < 1:12.0.0-2 | 1:12.0.0-2 |
| openstack | nova | >= 0 < 2:13.1.0-1 | 2:13.1.0-1 |
| openstack | nova | >= 0 < 1:12.0.0-2 | 1:12.0.0-2 |
| openstack | nova | >= 0 < 2:13.1.0-1 | 2:13.1.0-1 |
| openstack | nova | >= 0 < 2014.2.4 | 2014.2.4 |
| openstack | nova | >= 0 < 1:2014.1.5-0ubuntu1.7 | 1:2014.1.5-0ubuntu1.7 |
| openstack | nova | >= 2014.2 < 2014.2.4 | 2014.2.4 |
| openstack | nova | >= 2015.1.0 < 2015.1.2 | 2015.1.2 |
| openstack | nova | >= 2015.1.0 < 2015.1.2 | 2015.1.2 |
CVSS provenance
nvdv2.06.8MEDIUMAV:N/AC:L/Au:S/C:N/I:N/A:C
osv6.8MEDIUM
vendor_debian6.8MEDIUM
vendor_redhat6.8MEDIUM
vendor_ubuntu6.8MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
OpenStack Nova vulnerabilities
vendor_ubuntu·2017-10-11·CVSS 6.8
CVE-2015-3241 [MEDIUM] OpenStack Nova vulnerabilities
Title: OpenStack Nova vulnerabilities
Summary: Several security issues were fixed in OpenStack Nova.
George Shuklin discovered that OpenStack Nova incorrectly handled the
migration process. A remote authenticated user could use this issue to
consume resources, resulting in a denial of service. (CVE-2015-3241)
George Shuklin and Tushar Patil discovered that OpenStack Nova incorrectly
handled deleting instances. A remote authenticated user could use this
issue to consume disk resources, resulting in a denial of service.
(CVE-2015-3280)
It was discovered that OpenStack Nova incorrectly limited qemu-img calls. A
remote authenticated user could use this issue to consume resources,
resulting in a denial of service. (CVE-2015-5162)
Matthew Booth discovered that OpenStack Nova incorrectly han
Red Hat
openstack-nova: May fail to delete images in resize state regression
vendor_redhat·2016-09-21·CVSS 6.8
CVE-2016-7498 [MEDIUM] CWE-400 openstack-nova: May fail to delete images in resize state regression
openstack-nova: May fail to delete images in resize state regression
OpenStack Compute (nova) 13.0.0 does not properly delete instances from compute nodes, which allows remote authenticated users to cause a denial of service (disk consumption) by deleting instances while in the resize state. NOTE: this vulnerability exists because of a CVE-2015-3280 regression.
Package: openstack-nova (Red Hat OpenStack Platform 10 (Newton)) - Not affected
Package: openstack-nova (Red Hat OpenStack Platform 9 (Mitaka)) - Not affected
Debian
CVE-2016-7498: nova - OpenStack Compute (nova) 13.0.0 does not properly delete instances from compute ...
vendor_debian·2016·CVSS 6.8
CVE-2016-7498 [MEDIUM] CVE-2016-7498: nova - OpenStack Compute (nova) 13.0.0 does not properly delete instances from compute ...
OpenStack Compute (nova) 13.0.0 does not properly delete instances from compute nodes, which allows remote authenticated users to cause a denial of service (disk consumption) by deleting instances while in the resize state. NOTE: this vulnerability exists because of a CVE-2015-3280 regression.
Scope: local
bookworm: resolved (fixed in 2:13.1.0-1)
bullseye: resolved (fixed in 2:13.1.0-1)
forky: resolved (fixed in 2:13.1.0-1)
sid: resolved (fixed in 2:13.1.0-1)
trixie: resolved (fixed in 2:13.1.0-1)
Red Hat
openstack-nova: Deleting instances in resize state fails
vendor_redhat·2015-09-01·CVSS 6.8
CVE-2015-3280 [MEDIUM] CWE-772 openstack-nova: Deleting instances in resize state fails
openstack-nova: Deleting instances in resize state fails
OpenStack Compute (nova) before 2014.2.4 (juno) and 2015.1.x before 2015.1.2 (kilo) does not properly delete instances from compute nodes, which allows remote authenticated users to cause a denial of service (disk consumption) by deleting instances while in the resize state.
A flaw was found in the way OpenStack Compute (nova) handled the resize state. If an authenticated user deleted an instance while it was in the resize state, it could cause the original instance to not be deleted from the compute node it was running on, allowing the user to cause a denial of service.
Debian
CVE-2015-3280: nova - OpenStack Compute (nova) before 2014.2.4 (juno) and 2015.1.x before 2015.1.2 (ki...
vendor_debian·2015·CVSS 6.8
CVE-2015-3280 [MEDIUM] CVE-2015-3280: nova - OpenStack Compute (nova) before 2014.2.4 (juno) and 2015.1.x before 2015.1.2 (ki...
OpenStack Compute (nova) before 2014.2.4 (juno) and 2015.1.x before 2015.1.2 (kilo) does not properly delete instances from compute nodes, which allows remote authenticated users to cause a denial of service (disk consumption) by deleting instances while in the resize state.
Scope: local
bookworm: resolved (fixed in 1:12.0.0-2)
bullseye: resolved (fixed in 1:12.0.0-2)
forky: resolved (fixed in 1:12.0.0-2)
sid: resolved (fixed in 1:12.0.0-2)
trixie: resolved (fixed in 1:12.0.0-2)
GHSA
GHSA-47vm-xhwp-2v86: OpenStack Compute (nova) 13
ghsa_unreviewed·2022-05-17·CVSS 6.8
CVE-2016-7498 [MEDIUM] GHSA-47vm-xhwp-2v86: OpenStack Compute (nova) 13
OpenStack Compute (nova) 13.0.0 does not properly delete instances from compute nodes, which allows remote authenticated users to cause a denial of service (disk consumption) by deleting instances while in the resize state. NOTE: this vulnerability exists because of a CVE-2015-3280 regression.
OSV
OpenStack Compute (nova) allows remote authenticated users to cause a denial of service
osv·2022-05-14
CVE-2015-3280 [MEDIUM] OpenStack Compute (nova) allows remote authenticated users to cause a denial of service
OpenStack Compute (nova) allows remote authenticated users to cause a denial of service
OpenStack Compute (nova) before 2014.2.4 (juno) and 2015.1.x before 2015.1.2 (kilo) does not properly delete instances from compute nodes, which allows remote authenticated users to cause a denial of service (disk consumption) by deleting instances while in the resize state.
GHSA
OpenStack Compute (nova) allows remote authenticated users to cause a denial of service
ghsa·2022-05-14
CVE-2015-3280 [MEDIUM] OpenStack Compute (nova) allows remote authenticated users to cause a denial of service
OpenStack Compute (nova) allows remote authenticated users to cause a denial of service
OpenStack Compute (nova) before 2014.2.4 (juno) and 2015.1.x before 2015.1.2 (kilo) does not properly delete instances from compute nodes, which allows remote authenticated users to cause a denial of service (disk consumption) by deleting instances while in the resize state.
OSV
nova vulnerabilities
osv·2017-10-11·CVSS 6.8
CVE-2015-3241 [MEDIUM] nova vulnerabilities
nova vulnerabilities
George Shuklin discovered that OpenStack Nova incorrectly handled the
migration process. A remote authenticated user could use this issue to
consume resources, resulting in a denial of service. (CVE-2015-3241)
George Shuklin and Tushar Patil discovered that OpenStack Nova incorrectly
handled deleting instances. A remote authenticated user could use this
issue to consume disk resources, resulting in a denial of service.
(CVE-2015-3280)
It was discovered that OpenStack Nova incorrectly limited qemu-img calls. A
remote authenticated user could use this issue to consume resources,
resulting in a denial of service. (CVE-2015-5162)
Matthew Booth discovered that OpenStack Nova incorrectly handled snapshots.
A remote authenticated user could use this issue to read arbitrar
OSV
CVE-2016-7498: OpenStack Compute (nova) 13
osv·2016-09-27·CVSS 6.8
CVE-2016-7498 [MEDIUM] CVE-2016-7498: OpenStack Compute (nova) 13
OpenStack Compute (nova) 13.0.0 does not properly delete instances from compute nodes, which allows remote authenticated users to cause a denial of service (disk consumption) by deleting instances while in the resize state. NOTE: this vulnerability exists because of a CVE-2015-3280 regression.
OSV
CVE-2015-3280: OpenStack Compute (nova) before 2014
osv·2015-10-26·CVSS 6.8
CVE-2015-3280 [MEDIUM] CVE-2015-3280: OpenStack Compute (nova) before 2014
OpenStack Compute (nova) before 2014.2.4 (juno) and 2015.1.x before 2015.1.2 (kilo) does not properly delete instances from compute nodes, which allows remote authenticated users to cause a denial of service (disk consumption) by deleting instances while in the resize state.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2016-7498 openstack-nova: May fail to delete images in resize state regression
bugzilla·2016-09-23·CVSS 6.8
CVE-2016-7498 [MEDIUM] CVE-2016-7498 openstack-nova: May fail to delete images in resize state regression
CVE-2016-7498 openstack-nova: May fail to delete images in resize state regression
If an authenticated user deletes an instance while it is in resize state, it
will cause the original instance to not be deleted from the compute
node it was running on. An attacker can use this to launch a denial of
service attack. All Nova setups are affected.
Affects
~~~~~~~
- Nova: ==13.0.0
Patches
~~~~~~~
- https://review.openstack.org/327398 (Mitaka)
- https://review.openstack.org/326262 (Newton)
Credits
~~~~~~~
- Rajesh Tailor from Red Hat (CVE-2016-7498)
References
~~~~~~~~~~
- https://bugs.launchpad.net/bugs/1589821
- http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-7498
Notes
~~~~~
- This bug is similar to OSSA-2015-017 (CVE-2015-3280) and was
re-introduced in the first release of Mitak
Bugzilla
openstack-nova: Nova may fail to delete images in resize state regression
bugzilla·2016-09-21·CVSS 6.8
CVE-2015-3280 [MEDIUM] openstack-nova: Nova may fail to delete images in resize state regression
openstack-nova: Nova may fail to delete images in resize state regression
It was reported from upstream that a vulnerability was found in Nova resize state. If an authenticated user deletes an instance while it is in resize state, it will cause the original instance to not be deleted from the compute node it was running on. An attacker can use this to launch a denial of service attack. All Nova setups are affected.
This vulnerability is similar to OSSA-2015-017 (CVE-2015-3280) and was re-introduced in the first release of Mitaka version of Nova and it was re-fixed in nova-13.1.0.
References:
http://seclists.org/oss-sec/2016/q3/577
Bugzilla
CVE-2015-3280 openstack-nova: Deleting instances in resize state fails [fedora-all]
bugzilla·2015-09-14·CVSS 6.8
CVE-2015-3280 [MEDIUM] CVE-2015-3280 openstack-nova: Deleting instances in resize state fails [fedora-all]
CVE-2015-3280 openstack-nova: Deleting instances in resize state fails [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple supported versio
Bugzilla
CVE-2015-3280 openstack-nova: Deleting instances in resize state fails
bugzilla·2015-08-28·CVSS 6.8
CVE-2015-3280 [MEDIUM] CVE-2015-3280 openstack-nova: Deleting instances in resize state fails
CVE-2015-3280 openstack-nova: Deleting instances in resize state fails
It was reported from upstream that a vulnerability was found in Nova resize state. If an authenticated user deletes an instance while it is in resize state, it will cause the original instance to not be deleted from the compute node it was running on. An attacker can use this to launch a denial of service attack. All Nova setups are affected.
Affected versions: 2014.2 versions through 2014.2.3, and 2015.1 versions through 2015.1.1
Discussion:
Created openstack-nova tracking bugs for this issue:
Affects: openstack-rdo [bug 1263019]
---
Created openstack-nova tracking bugs for this issue:
Affects: fedora-all [bug 1263020]
---
Please see upstream commits rather than patches attached to this bz.
---
Acknowledgem
http://rhn.redhat.com/errata/RHSA-2015-1898.htmlhttp://www.oracle.com/technetwork/topics/security/bulletinjan2016-2867206.htmlhttp://www.securityfocus.com/bid/76553https://launchpad.net/bugs/1392527https://security.openstack.org/ossa/OSSA-2015-017.htmlhttp://rhn.redhat.com/errata/RHSA-2015-1898.htmlhttp://www.oracle.com/technetwork/topics/security/bulletinjan2016-2867206.htmlhttp://www.securityfocus.com/bid/76553https://launchpad.net/bugs/1392527https://security.openstack.org/ossa/OSSA-2015-017.html
2015-10-26
Published