CVE-2013-4179
OpenStack: Nova XML entities DoS
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
1Exploited in Wild
-Decision
Descriptions
The security group extension in OpenStack Compute (Nova) Grizzly 2013.1.3, Havana before havana-3, and earlier allows remote attackers to cause a denial of service (resource consumption and crash) via an XML Entity Expansion (XEE) attack. NOTE: this issue is due to an incomplete fix for CVE-2013-1664.
La extensión de grupos de seguridad en OpenStack Compute (Nova) Grizzly 2013.1.3, Havana anteriores a havana-3, y anteriores, permite a atacantes remotos causar una denegación de servicio (consumo de recursos y caída) a través de un ataque XML Entity Expansion (XEE). NOTA: este problema es debido a una solución incompleta para CVE-2013-1664.
It was discovered that Nova did not properly enforce the is_public property when determining flavor access. An authenticated attacker could exploit this to obtain sensitive information in private flavors. This issue only affected Ubuntu 12.10 and 13.10. Grant Murphy discovered that Nova would allow XML entity processing. A remote unauthenticated attacker could exploit this using the Nova API to cause a denial of service via resource exhaustion. This issue only affected Ubuntu 13.10. Various other issues were also addressed.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2013-06-12 CVE Reserved
- 2013-09-04 CVE Published
- 2024-08-06 CVE Updated
- 2024-08-06 First Exploit
- 2025-04-03 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
- CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer
- CWE-776: Improper Restriction of Recursive Entity References in DTDs ('XML Entity Expansion')
CAPEC
References (5)
URL | Tag | Source |
---|
URL | Date | SRC |
---|---|---|
https://bugs.launchpad.net/ossa/+bug/1190229 | 2024-08-06 |
URL | Date | SRC |
---|---|---|
http://rhn.redhat.com/errata/RHSA-2013-1199.html | 2023-11-07 |
URL | Date | SRC |
---|---|---|
http://www.ubuntu.com/usn/USN-2005-1 | 2023-11-07 | |
https://access.redhat.com/security/cve/CVE-2013-4179 | 2013-09-03 | |
https://bugzilla.redhat.com/show_bug.cgi?id=989707 | 2013-09-03 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Openstack Search vendor "Openstack" | Havana Search vendor "Openstack" for product "Havana" | <= havana-2 Search vendor "Openstack" for product "Havana" and version " <= havana-2" | - |
Affected
| ||||||
Openstack Search vendor "Openstack" | Havana Search vendor "Openstack" for product "Havana" | havana-1 Search vendor "Openstack" for product "Havana" and version "havana-1" | - |
Affected
| ||||||
Openstack Search vendor "Openstack" | Compute Search vendor "Openstack" for product "Compute" | 2013.1.3 Search vendor "Openstack" for product "Compute" and version "2013.1.3" | - |
Affected
|