CVE-2016-4972
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
OpenStack Murano before 1.0.3 (liberty) and 2.x before 2.0.1 (mitaka), Murano-dashboard before 1.0.3 (liberty) and 2.x before 2.0.1 (mitaka), and python-muranoclient before 0.7.3 (liberty) and 0.8.x before 0.8.5 (mitaka) improperly use loaders inherited from yaml.Loader when parsing MuranoPL and UI files, which allows remote attackers to create arbitrary Python objects and execute arbitrary code via crafted extended YAML tags in UI definitions in packages.
OpenStack Murano en versiones anteriores a 1.0.3 (liberty) y 2.x en versiones anteriores a 2.0.1 (mitaka), Murano-dashboard en versiones anteriores a 1.0.3 (liberty) y 2.x en versiones anteriores a 2.0.1 (mitaka) y python-muranoclient en versiones anteriores a 0.7.3 (liberty) y 0.8.x en versiones anteriores a 0.8.5 (mitaka) no utiliza correctamente loaders heredados de yaml.Loader cuando se analizan sintácticamente archivos MuranoPL y UI, lo que permite a atacantes remotos crear objetos Python arbitrarios y ejecutar código arbitrario a través de etiquetas YAML extendidas manipuladas en definiciones UI en paquetes.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2016-05-24 CVE Reserved
- 2016-09-26 CVE Published
- 2024-08-06 CVE Updated
- 2024-10-26 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-20: Improper Input Validation
CAPEC
References (3)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://www.openwall.com/lists/oss-security/2016/06/23/8 | 2016-09-28 | |
https://bugs.launchpad.net/murano/+bug/1586079 | 2016-09-28 | |
https://bugs.launchpad.net/python-muranoclient/+bug/1586078 | 2016-09-28 |
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Openstack Search vendor "Openstack" | Mitaka-murano Search vendor "Openstack" for product "Mitaka-murano" | <= 2.0.0 Search vendor "Openstack" for product "Mitaka-murano" and version " <= 2.0.0" | - |
Affected
| ||||||
Openstack Search vendor "Openstack" | Murano Search vendor "Openstack" for product "Murano" | <= 1.0.2 Search vendor "Openstack" for product "Murano" and version " <= 1.0.2" | - |
Affected
| ||||||
Openstack Search vendor "Openstack" | Murano-dashboard Search vendor "Openstack" for product "Murano-dashboard" | <= 1.0.2 Search vendor "Openstack" for product "Murano-dashboard" and version " <= 1.0.2" | - |
Affected
| ||||||
Openstack Search vendor "Openstack" | Python-muranoclient Search vendor "Openstack" for product "Python-muranoclient" | <= 0.7.2 Search vendor "Openstack" for product "Python-muranoclient" and version " <= 0.7.2" | - |
Affected
|