OpenStack Compute(Diablo) 2011.3

CPE Details

OpenStack Compute(Diablo) 2011.3
2011.3
2012-06-22
12h43 +00:00
2012-08-24
17h56 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:openstack:diablo:2011.3:*:*:*:*:*:*:*

Informations

Vendor

openstack

Product

diablo

Version

2011.3

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2012-3361 2012-07-22 14h00 +00:00 virt/disk/api.py in OpenStack Compute (Nova) Folsom (2012.2), Essex (2012.1), and Diablo (2011.3) allows remote authenticated users to overwrite arbitrary files via a symlink attack on a file in an image.
5.5
CVE-2012-2654 2012-06-21 13h00 +00:00 The (1) EC2 and (2) OS APIs in OpenStack Compute (Nova) Folsom (2012.2), Essex (2012.1), and Diablo (2011.3) do not properly check the protocol when security groups are created and the network protocol is not specified entirely in lowercase, which allows remote attackers to bypass intended access restrictions.
4.3