oss-sec mailing list archives
Security issue in OpenStack (nova)
From: Jamie Strandboge <jamie () canonical com>
Date: Mon, 03 Oct 2011 11:26:52 -0500
Scott Moser discovered that OpenStack's nova did not do sanity checking when importing qcow2 files, which could result in unintended access to the host filesystem via qemu's backing store functionality. CVE-2011-3147 has been assigned for this issue. For more information, please see: https://launchpad.net/bugs/853330 -- Jamie Strandboge | http://www.canonical.com
Attachment:
signature.asc
Description: This is a digitally signed message part
Current thread:
- Security issue in OpenStack (nova) Jamie Strandboge (Oct 03)