|
|
| |
|
| |
nova: privilege escalation
| Package(s): | nova |
CVE #(s): | CVE-2012-3360
CVE-2012-3361
|
| Created: | July 3, 2012 |
Updated: | August 23, 2012 |
| Description: |
From the Ubuntu advisory:
Matthias Weckbecker discovered that, when using the OpenStack API to
setup libvirt-based hypervisors, an authenticated user could inject
files in arbitrary locations on the file system of the host running
Nova. A remote attacker could use this to gain root privileges. This
issue only affects Ubuntu 12.04 LTS. (CVE-2012-3360)
Pádraig Brady discovered that an authenticated user could corrupt
arbitrary files of the host running Nova. A remote attacker could
use this to cause a denial of service or possibly gain privileges.
(CVE-2012-3361) |
| Alerts: |
|
( Log in to post comments)
|
|
|