CVE-2015-5286
published 2015-10-26CVE-2015-5286: OpenStack Image Service (Glance) before 2014.2.4 (juno) and 2015.1.x before 2015.1.2 (kilo) allows remote authenticated users to bypass the storage quota and…
PriorityP426medium6.8CVSS 2.0
AVNACLAuSCNINAC
EPSS
2.38%
81.9th percentile
OpenStack Image Service (Glance) before 2014.2.4 (juno) and 2015.1.x before 2015.1.2 (kilo) allows remote authenticated users to bypass the storage quota and cause a denial of service (disk consumption) by deleting images that are being uploaded using a token that expires during the process. NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-9623.
Affected
11 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | glance | < glance 1:11.0.0-1 (bookworm) | glance 1:11.0.0-1 (bookworm) |
| glance_project | glance | >= 0 < 1:11.0.0-1 | 1:11.0.0-1 |
| glance_project | glance | >= 0 < 1:11.0.0-1 | 1:11.0.0-1 |
| glance_project | glance | >= 0 < 1:11.0.0-1 | 1:11.0.0-1 |
| glance_project | glance | >= 0 < 1:11.0.0-1 | 1:11.0.0-1 |
| glance_project | glance | >= 0 < 2014.2.4 | 2014.2.4 |
| glance_project | glance | >= 0 < 1:2014.1.5-0ubuntu1.1 | 1:2014.1.5-0ubuntu1.1 |
| glance_project | glance | >= 2015.1.0 < 2015.1.2 | 2015.1.2 |
| openstack | image_registry_and_delivery_service | <= 2014.2.3 | — |
| openstack | image_registry_and_delivery_service | — | — |
| openstack | image_registry_and_delivery_service | — | — |
CVSS provenance
nvdv2.06.8MEDIUMAV:N/AC:L/Au:S/C:N/I:N/A:C
ghsa4.0MEDIUM
osv5.5MEDIUM
vendor_ubuntu5.5MEDIUM
vendor_debian4.0MEDIUM
vendor_redhat4.0MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
OpenStack Image Service (Glance) allows remote authenticated users to bypass storage quota, cause denial of service
ghsa·2022-05-17·CVSS 4.0
CVE-2015-5286 [MEDIUM] CWE-400 OpenStack Image Service (Glance) allows remote authenticated users to bypass storage quota, cause denial of service
OpenStack Image Service (Glance) allows remote authenticated users to bypass storage quota, cause denial of service
OpenStack Image Service (Glance) before 2014.2.4 (juno) and 2015.1.x before 2015.1.2 (kilo) allows remote authenticated users to bypass the storage quota and cause a denial of service (disk consumption) by deleting images that are being uploaded using a token that expires during the process. NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-9623.
OSV
OpenStack Image Service (Glance) allows remote authenticated users to bypass storage quota, cause denial of service
osv·2022-05-17·CVSS 4.0
CVE-2015-5286 [MEDIUM] OpenStack Image Service (Glance) allows remote authenticated users to bypass storage quota, cause denial of service
OpenStack Image Service (Glance) allows remote authenticated users to bypass storage quota, cause denial of service
OpenStack Image Service (Glance) before 2014.2.4 (juno) and 2015.1.x before 2015.1.2 (kilo) allows remote authenticated users to bypass the storage quota and cause a denial of service (disk consumption) by deleting images that are being uploaded using a token that expires during the process. NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-9623.
OSV
glance vulnerabilities
osv·2017-10-11·CVSS 5.5
CVE-2015-5251 [MEDIUM] glance vulnerabilities
glance vulnerabilities
Hemanth Makkapati discovered that OpenStack Glance incorrectly handled
access restrictions. A remote authenticated user could use this issue to
change the status of images, contrary to access restrictions.
(CVE-2015-5251)
Mike Fedosin and Alexei Galkin discovered that OpenStack Glance incorrectly
handled the storage quota. A remote authenticated user could use this issue
to consume disk resources, leading to a denial of service. (CVE-2015-5286)
Erno Kuvaja discovered that OpenStack Glance incorrectly handled the
show_multiple_locations option. When show_multiple_locations is enabled,
a remote authenticated user could change an image status and upload new
image data. (CVE-2016-0757)
OSV
CVE-2015-5286: OpenStack Image Service (Glance) before 2014
osv·2015-10-26·CVSS 4.0
CVE-2015-5286 [MEDIUM] CVE-2015-5286: OpenStack Image Service (Glance) before 2014
OpenStack Image Service (Glance) before 2014.2.4 (juno) and 2015.1.x before 2015.1.2 (kilo) allows remote authenticated users to bypass the storage quota and cause a denial of service (disk consumption) by deleting images that are being uploaded using a token that expires during the process. NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-9623.
Ubuntu
OpenStack Glance vulnerabilities
vendor_ubuntu·2017-10-11·CVSS 5.5
CVE-2015-5251 [MEDIUM] OpenStack Glance vulnerabilities
Title: OpenStack Glance vulnerabilities
Summary: Several security issues were fixed in OpenStack Glance.
Hemanth Makkapati discovered that OpenStack Glance incorrectly handled
access restrictions. A remote authenticated user could use this issue to
change the status of images, contrary to access restrictions.
(CVE-2015-5251)
Mike Fedosin and Alexei Galkin discovered that OpenStack Glance incorrectly
handled the storage quota. A remote authenticated user could use this issue
to consume disk resources, leading to a denial of service. (CVE-2015-5286)
Erno Kuvaja discovered that OpenStack Glance incorrectly handled the
show_multiple_locations option. When show_multiple_locations is enabled,
a remote authenticated user could change an image status and upload new
image data. (CVE-2016-0757)
Red Hat
openstack-glance: Storage overrun by deleting images
vendor_redhat·2015-10-01·CVSS 4.0
CVE-2015-5286 [MEDIUM] CWE-400 openstack-glance: Storage overrun by deleting images
openstack-glance: Storage overrun by deleting images
OpenStack Image Service (Glance) before 2014.2.4 (juno) and 2015.1.x before 2015.1.2 (kilo) allows remote authenticated users to bypass the storage quota and cause a denial of service (disk consumption) by deleting images that are being uploaded using a token that expires during the process. NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-9623.
A race-condition flaw was discovered in the OpenStack Image service (glance). When images in the upload state were deleted using a token close to expiration, untracked image data could accumulate in the back end. Because untracked data does not count towards the storage quota, an attacker could use this flaw to cause a denial of service through resource exhaustion.
Debian
CVE-2015-5286: glance - OpenStack Image Service (Glance) before 2014.2.4 (juno) and 2015.1.x before 2015...
vendor_debian·2015·CVSS 4.0
CVE-2015-5286 [MEDIUM] CVE-2015-5286: glance - OpenStack Image Service (Glance) before 2014.2.4 (juno) and 2015.1.x before 2015...
OpenStack Image Service (Glance) before 2014.2.4 (juno) and 2015.1.x before 2015.1.2 (kilo) allows remote authenticated users to bypass the storage quota and cause a denial of service (disk consumption) by deleting images that are being uploaded using a token that expires during the process. NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-9623.
Scope: local
bookworm: resolved (fixed in 1:11.0.0-1)
bullseye: resolved (fixed in 1:11.0.0-1)
forky: resolved (fixed in 1:11.0.0-1)
sid: resolved (fixed in 1:11.0.0-1)
trixie: resolved (fixed in 1:11.0.0-1)
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2015-5286 openstack-glance: Storage overrun by deleting images [fedora-all]
bugzilla·2015-10-02·CVSS 6.8
CVE-2015-5286 [MEDIUM] CVE-2015-5286 openstack-glance: Storage overrun by deleting images [fedora-all]
CVE-2015-5286 openstack-glance: Storage overrun by deleting images [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple supported versions o
Bugzilla
CVE-2015-5286 openstack-glance: Storage overrun by deleting images
bugzilla·2015-09-30·CVSS 6.8
CVE-2015-5286 [MEDIUM] CVE-2015-5286 openstack-glance: Storage overrun by deleting images
CVE-2015-5286 openstack-glance: Storage overrun by deleting images
A vulnerability in openstack-glance allowing malicous user to cause DoS was reported. By deleting images that are being uploaded using a token that is about to expire, a malicious user can overcome the storage quota and accumulate untracked image data in the backend resulting in potential resource exhaustion and denial of service. All Glance setups using the V1 API are affected and all setups using the V2 API with the registry db_api enabled are affected.
Affects: =2015.1.0, Martin, attachments were correct, it just that this need an extra set of
> patch to fully address this CVE.
>
> You can preview the upcoming advisory (including all required changes review
> url) here: https://review.openstack.org/#/c/229950/2/ossa/OS
http://rhn.redhat.com/errata/RHSA-2015-1897.htmlhttp://www.securityfocus.com/bid/76943https://bugs.launchpad.net/bugs/1498163https://security.openstack.org/ossa/OSSA-2015-020.htmlhttp://rhn.redhat.com/errata/RHSA-2015-1897.htmlhttp://www.securityfocus.com/bid/76943https://bugs.launchpad.net/bugs/1498163https://security.openstack.org/ossa/OSSA-2015-020.html
2015-10-26
Published