OpenStack Nova vulnerable to unauthorized access to potentially sensitive data
Moderate severity
GitHub Reviewed
Published
Jul 24, 2024
to the GitHub Advisory Database
•
Updated Oct 30, 2024
Package
Affected versions
<= 27.4.0
>= 28.0.0, <= 28.2.0
>= 29.0.0, <= 29.1.0
Patched versions
None
Description
Published by the National Vulnerability Database
Jul 24, 2024
Published to the GitHub Advisory Database
Jul 24, 2024
Reviewed
Jul 25, 2024
Last updated
Oct 30, 2024
In OpenStack Nova before 27.4.1, 28 before 28.2.1, and 29 before 29.1.1, by supplying a raw format image that is actually a crafted QCOW2 image with a backing file path or VMDK flat image with a descriptor file path, an authenticated user may convince systems to return a copy of the referenced file's contents from the server, resulting in unauthorized access to potentially sensitive data. All Nova deployments are affected. NOTE: this issue exists because of an incomplete fix for CVE-2022-47951 and CVE-2024-32498.
References