CVE-2013-4497
openstack-nova: XenAPI security groups not kept through migrate or resize
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
The XenAPI backend in OpenStack Compute (Nova) Folsom, Grizzly, and Havana before 2013.2 does not properly apply security groups (1) when resizing an image or (2) during live migration, which allows remote attackers to bypass intended restrictions.
El backend XenAPI en OpenStack Compute (Nova) Folsom, Grizzly, y Habana anterior a 2013.2 no se aplica correctamente los grupos de seguridad (1) al cambiar el tamaño de una imagen o (2) durante la migración en tiempo real, lo que permite a atacantes remotos evitar las restricciones previstas.
OpenStack Compute launches and schedules large networks of virtual machines, creating a redundant and scalable cloud computing platform. Compute provides the software, control panels, and APIs required to orchestrate a cloud, including running virtual machine instances, managing networks, and controlling access through users and projects. A flaw was found in the way the libvirt driver handled short-lived disk back-up files on Compute nodes. An authenticated attacker could use this flaw to create a large number of such files, exhausting all available space on Compute node disks, and potentially causing a denial of service. Note that only Compute setups using the libvirt driver were affected.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2013-06-12 CVE Reserved
- 2013-11-05 CVE Published
- 2024-08-06 CVE Updated
- 2025-03-30 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-264: Permissions, Privileges, and Access Controls
CAPEC
References (6)
URL | Tag | Source |
---|---|---|
http://www.openwall.com/lists/oss-security/2013/11/03/2 | Mailing List |
|
http://www.openwall.com/lists/oss-security/2013/11/03/3 | Mailing List |
|
https://bugs.launchpad.net/nova/+bug/1073306 | X_refsource_confirm | |
https://bugs.launchpad.net/nova/+bug/1202266 | X_refsource_confirm |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://access.redhat.com/security/cve/CVE-2013-4497 | 2014-04-03 | |
https://bugzilla.redhat.com/show_bug.cgi?id=1026171 | 2014-04-03 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Openstack Search vendor "Openstack" | Havana Search vendor "Openstack" for product "Havana" | <= havana-3 Search vendor "Openstack" for product "Havana" and version " <= havana-3" | - |
Affected
| ||||||
Openstack Search vendor "Openstack" | Havana Search vendor "Openstack" for product "Havana" | havana-1 Search vendor "Openstack" for product "Havana" and version "havana-1" | - |
Affected
| ||||||
Openstack Search vendor "Openstack" | Havana Search vendor "Openstack" for product "Havana" | havana-2 Search vendor "Openstack" for product "Havana" and version "havana-2" | - |
Affected
| ||||||
Openstack Search vendor "Openstack" | Grizzly Search vendor "Openstack" for product "Grizzly" | - | - |
Affected
| ||||||
Openstack Search vendor "Openstack" | Folsom Search vendor "Openstack" for product "Folsom" | - | - |
Affected
|