LWN.net Logo

openstack-nova: directory traversal

Package(s):openstack-nova CVE #(s):CVE-2011-4596
Created:December 23, 2011 Updated:January 20, 2012
Description: From the Red Hat bugzilla:

Prevent potential directory traversal with malicious EC2 image tarballs, by making sure the tarfile is safe before unpacking it.

Prevent potential directory traversal with malicious file names in EC2 image manifests.

Alerts:
Fedora FEDORA-2011-17111 2011-12-14
Fedora FEDORA-2012-0682 2012-01-19

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds