LWN.net Logo

glance: access restriction bypass

Package(s):openstack-glance CVE #(s):CVE-2012-4573
Created:November 8, 2012 Updated:December 11, 2012
Description:

From the SUSE advisory:

OpenStack glance had a bug where image deletion was allowed for all logged in users (CVE-2012-4573).

Alerts:
SUSE SUSE-SU-2012:1455-1 2012-11-08
Ubuntu USN-1626-1 2012-11-08
Ubuntu USN-1626-2 2012-11-09
Fedora FEDORA-2012-18085 2012-11-21
Red Hat RHSA-2012:1558-01 2012-12-10

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds