Debian Nova vulnerabilities
61 known vulnerabilities affecting debian/nova.
Total CVEs
61
CISA KEV
0
Public exploits
1
Exploited in wild
0
Severity breakdown
CRITICAL1HIGH5MEDIUM36LOW19
Vulnerabilities
Page 2 of 4
CVE-2016-7498P4MEDIUMCVSS 6.8fixed in nova 2:13.1.0-1 (bookworm)2016
CVE-2016-7498 [MEDIUM] CVE-2016-7498: nova - OpenStack Compute (nova) 13.0.0 does not properly delete instances from compute ...
OpenStack Compute (nova) 13.0.0 does not properly delete instances from compute nodes, which allows remote authenticated users to cause a denial of service (disk consumption) by deleting instances while in the resize state. NOTE: this vulnerability exists because of a CVE-2015-3280 regression.
Scope: local
bookworm: resolved (fixed in 2:13.1.0-1)
bullseye: resolved (fi
debian
CVE-2015-8749P4MEDIUMCVSS 5.9fixed in nova 2:13.0.0~rc3-1 (bookworm)2015
CVE-2015-8749 [MEDIUM] CVE-2015-8749: nova - The volume_utils._parse_volume_info function in OpenStack Compute (Nova) before ...
The volume_utils._parse_volume_info function in OpenStack Compute (Nova) before 2015.1.3 (kilo) and 12.0.x before 12.0.1 (liberty) includes the connection_info dictionary in the StorageError message when using the Xen backend, which might allow attackers to obtain sensitive password information by reading log files or other unspecified vectors.
Scope: local
bookworm: r
debian
CVE-2022-47951P4MEDIUMCVSS 5.7fixed in cinder 2:21.0.0-3 (bookworm)2022
CVE-2022-47951 [MEDIUM] CVE-2022-47951: cinder - An issue was discovered in OpenStack Cinder before 19.1.2, 20.x before 20.0.2, a...
An issue was discovered in OpenStack Cinder before 19.1.2, 20.x before 20.0.2, and 21.0.0; Glance before 23.0.1, 24.x before 24.1.1, and 25.0.0; and Nova before 24.1.2, 25.x before 25.0.2, and 26.0.0. By supplying a specially created VMDK flat image that references a specific backing file path, an authenticated user may convince systems to return a copy of that fil
debian
CVE-2013-2256P4MEDIUMCVSS 6.0fixed in nova 2013.1.2-3 (bookworm)2013
CVE-2013-2256 [MEDIUM] CVE-2013-2256: nova - OpenStack Compute (Nova) before 2013.1.3 and Havana before havana-2 does not pro...
OpenStack Compute (Nova) before 2013.1.3 and Havana before havana-2 does not properly enforce the os-flavor-access:is_public property, which allows remote authenticated users to obtain sensitive information (flavor properties), boot arbitrary flavors, and possibly have other unspecified impacts by guessing the flavor id.
Scope: local
bookworm: resolved (fixed in 2013.1
debian
CVE-2012-3360P4MEDIUMCVSS 5.5fixed in nova 2012.1.1-2 (bookworm)2012
CVE-2012-3360 [MEDIUM] CVE-2012-3360: nova - Directory traversal vulnerability in virt/disk/api.py in OpenStack Compute (Nova...
Directory traversal vulnerability in virt/disk/api.py in OpenStack Compute (Nova) Folsom (2012.2) and Essex (2012.1), when used over libvirt-based hypervisors, allows remote authenticated users to write arbitrary files to the disk image via a .. (dot dot) in the path attribute of a file element.
Scope: local
bookworm: resolved (fixed in 2012.1.1-2)
bullseye: resolved (
debian
CVE-2015-3241P4MEDIUMCVSS 6.8fixed in nova 1:12.0.0-2 (bookworm)2015
CVE-2015-3241 [MEDIUM] CVE-2015-3241: nova - OpenStack Compute (nova) 2015.1 through 2015.1.1, 2014.2.3, and earlier does not...
OpenStack Compute (nova) 2015.1 through 2015.1.1, 2014.2.3, and earlier does not stop the migration process when the instance is deleted, which allows remote authenticated users to cause a denial of service (disk, network, and other resource consumption) by resizing and then deleting an instance.
Scope: local
bookworm: resolved (fixed in 1:12.0.0-2)
bullseye: resolved
debian
CVE-2015-3280P4LOWCVSS 6.8fixed in nova 1:12.0.0-2 (bookworm)2015
CVE-2015-3280 [MEDIUM] CVE-2015-3280: nova - OpenStack Compute (nova) before 2014.2.4 (juno) and 2015.1.x before 2015.1.2 (ki...
OpenStack Compute (nova) before 2014.2.4 (juno) and 2015.1.x before 2015.1.2 (kilo) does not properly delete instances from compute nodes, which allows remote authenticated users to cause a denial of service (disk consumption) by deleting instances while in the resize state.
Scope: local
bookworm: resolved (fixed in 1:12.0.0-2)
bullseye: resolved (fixed in 1:12.0.0-2)
debian
CVE-2013-0208P4MEDIUMCVSS 6.5fixed in nova 2012.1.1-12 (bookworm)2013
CVE-2013-0208 [MEDIUM] CVE-2013-0208: nova - The boot-from-volume feature in OpenStack Compute (Nova) Folsom and Essex, when ...
The boot-from-volume feature in OpenStack Compute (Nova) Folsom and Essex, when using nova-volumes, allows remote authenticated users to boot from other users' volumes via a volume id in the block_device_mapping parameter.
Scope: local
bookworm: resolved (fixed in 2012.1.1-12)
bullseye: resolved (fixed in 2012.1.1-12)
forky: resolved (fixed in 2012.1.1-12)
sid: resolve
debian
CVE-2012-3361P4MEDIUMCVSS 5.5fixed in nova 2012.1.1-2 (bookworm)2012
CVE-2012-3361 [MEDIUM] CVE-2012-3361: nova - virt/disk/api.py in OpenStack Compute (Nova) Folsom (2012.2), Essex (2012.1), an...
virt/disk/api.py in OpenStack Compute (Nova) Folsom (2012.2), Essex (2012.1), and Diablo (2011.3) allows remote authenticated users to overwrite arbitrary files via a symlink attack on a file in an image.
Scope: local
bookworm: resolved (fixed in 2012.1.1-2)
bullseye: resolved (fixed in 2012.1.1-2)
forky: resolved (fixed in 2012.1.1-2)
sid: resolved (fixed in 2012.1.1-
debian
CVE-2015-0259P4MEDIUMCVSS 5.1fixed in nova 2014.1.3-11 (bookworm)2015
CVE-2015-0259 [MEDIUM] CVE-2015-0259: nova - OpenStack Compute (Nova) before 2014.1.4, 2014.2.x before 2014.2.3, and kilo bef...
OpenStack Compute (Nova) before 2014.1.4, 2014.2.x before 2014.2.3, and kilo before kilo-3 does not validate the origin of websocket requests, which allows remote attackers to hijack the authentication of users for access to consoles via a crafted webpage.
Scope: local
bookworm: resolved (fixed in 2014.1.3-11)
bullseye: resolved (fixed in 2014.1.3-11)
forky: resolved (
debian
CVE-2012-3447P4MEDIUMCVSS 5.5fixed in nova 2012.1.1-6 (bookworm)2012
CVE-2012-3447 [MEDIUM] CVE-2012-3447: nova - virt/disk/api.py in OpenStack Compute (Nova) 2012.1.x before 2012.1.2 and Folsom...
virt/disk/api.py in OpenStack Compute (Nova) 2012.1.x before 2012.1.2 and Folsom before Folsom-3 allows remote authenticated users to overwrite arbitrary files via a symlink attack on a file in an image that uses a symlink that is only readable by root. NOTE: this vulnerability exists because of an incomplete fix for CVE-2012-3361.
Scope: local
bookworm: resolved (fixe
debian
CVE-2013-1664P4MEDIUMCVSS 5.0fixed in cinder 2012.2.3-1 (bookworm)2013
CVE-2013-1664 [MEDIUM] CVE-2013-1664: cinder - The XML libraries for Python 3.4, 3.3, 3.2, 3.1, 2.7, and 2.6, as used in OpenSt...
The XML libraries for Python 3.4, 3.3, 3.2, 3.1, 2.7, and 2.6, as used in OpenStack Keystone Essex, Folsom, and Grizzly; Compute (Nova) Essex and Folsom; Cinder Folsom; Django; and possibly other products allow remote attackers to cause a denial of service (resource consumption and crash) via an XML Entity Expansion (XEE) attack.
Scope: local
bookworm: resolved (fixe
debian
CVE-2012-0030P4MEDIUMCVSS 4.9fixed in nova 2012.1~rc1-1 (bookworm)2012
CVE-2012-0030 [MEDIUM] CVE-2012-0030: nova - Nova 2011.3 and Essex, when using the OpenStack API, allows remote authenticated...
Nova 2011.3 and Essex, when using the OpenStack API, allows remote authenticated users to bypass access restrictions for tenants of other users via an OSAPI request with a modified project_id URI parameter.
Scope: local
bookworm: resolved (fixed in 2012.1~rc1-1)
bullseye: resolved (fixed in 2012.1~rc1-1)
forky: resolved (fixed in 2012.1~rc1-1)
sid: resolved (fixed in 2
debian
CVE-2012-2654P4MEDIUMCVSS 4.3fixed in nova 2012.1-6 (bookworm)2012
CVE-2012-2654 [MEDIUM] CVE-2012-2654: nova - The (1) EC2 and (2) OS APIs in OpenStack Compute (Nova) Folsom (2012.2), Essex (...
The (1) EC2 and (2) OS APIs in OpenStack Compute (Nova) Folsom (2012.2), Essex (2012.1), and Diablo (2011.3) do not properly check the protocol when security groups are created and the network protocol is not specified entirely in lowercase, which allows remote attackers to bypass intended access restrictions.
Scope: local
bookworm: resolved (fixed in 2012.1-6)
bullsey
debian
CVE-2013-6419P4MEDIUMCVSS 5.0fixed in neutron 2013.2.1-1 (bookworm)2013
CVE-2013-6419 [MEDIUM] CVE-2013-6419: neutron - Interaction error in OpenStack Nova and Neutron before Havana 2013.2.1 and iceho...
Interaction error in OpenStack Nova and Neutron before Havana 2013.2.1 and icehouse-1 does not validate the instance ID of the tenant making a request, which allows remote tenants to obtain sensitive metadata by spoofing the device ID that is bound to a port, which is not properly handled by (1) api/metadata/handler.py in Nova and (2) the neutron-metadata-agent (age
debian
CVE-2013-1068P4MEDIUMCVSS 5.0fixed in cinder 2014.1.1-3 (bookworm)2013
CVE-2013-1068 [MEDIUM] CVE-2013-1068: cinder - The OpenStack Nova (python-nova) package 1:2013.2.3-0 before 1:2013.2.3-0ubuntu1...
The OpenStack Nova (python-nova) package 1:2013.2.3-0 before 1:2013.2.3-0ubuntu1.2 and 1:2014.1-0 before 1:2014.1-0ubuntu1.2 and Openstack Cinder (python-cinder) package 1:2013.2.3-0 before 1:2013.2.3-0ubuntu1.1 and 1:2014.1-0 before 1:2014.1-0ubuntu1.1 for Ubuntu 13.10 and 14.04 LTS does not properly set the sudo configuration, which makes it easier for attackers to
debian
CVE-2015-7548P4LOWCVSS 3.5fixed in nova 2:13.0.0~rc3-1 (bookworm)2015
CVE-2015-7548 [LOW] CVE-2015-7548: nova - OpenStack Compute (Nova) before 2015.1.3 (kilo) and 12.0.x before 12.0.1 (libert...
OpenStack Compute (Nova) before 2015.1.3 (kilo) and 12.0.x before 12.0.1 (liberty), when using libvirt to spawn instances and use_cow_images is set to false, allow remote authenticated users to read arbitrary files by overwriting an instance disk with a crafted image and requesting a snapshot.
Scope: local
bookworm: resolved (fixed in 2:13.0.0~rc3-1)
bullseye: resolved (f
debian
CVE-2014-3517P4MEDIUMCVSS 4.3fixed in nova 2014.1.1-8 (bookworm)2014
CVE-2014-3517 [MEDIUM] CVE-2014-3517: nova - api/metadata/handler.py in OpenStack Compute (Nova) before 2013.2.4, 2014.x befo...
api/metadata/handler.py in OpenStack Compute (Nova) before 2013.2.4, 2014.x before 2014.1.2, and Juno before Juno-2, when proxying metadata requests through Neutron, makes it easier for remote attackers to guess instance ID signatures via a brute-force attack that relies on timing differences in responses to instance metadata requests.
Scope: local
bookworm: resolved (
debian
CVE-2013-4278P4MEDIUMCVSS 6.0fixed in nova 2013.1.3-1 (bookworm)2013
CVE-2013-4278 [MEDIUM] CVE-2013-4278: nova - The "create an instance" API in OpenStack Compute (Nova) Folsom, Grizzly, and Ha...
The "create an instance" API in OpenStack Compute (Nova) Folsom, Grizzly, and Havana does not properly enforce the os-flavor-access:is_public property, which allows remote authenticated users to boot arbitrary flavors by guessing the flavor id. NOTE: this issue is due to an incomplete fix for CVE-2013-2256.
Scope: local
bookworm: resolved (fixed in 2013.1.3-1)
bullseye
debian
CVE-2013-6491P4MEDIUMCVSS 4.3fixed in nova 2013.2.3-1 (bookworm)2013
CVE-2013-6491 [MEDIUM] CVE-2013-6491: nova - The python-qpid client (common/rpc/impl_qpid.py) in OpenStack Oslo before 2013.2...
The python-qpid client (common/rpc/impl_qpid.py) in OpenStack Oslo before 2013.2 does not enforce SSL connections when qpid_protocol is set to ssl, which allows remote attackers to obtain sensitive information by sniffing the network.
Scope: local
bookworm: resolved (fixed in 2013.2.3-1)
bullseye: resolved (fixed in 2013.2.3-1)
forky: resolved (fixed in 2013.2.3-1)
sid
debian