CVE-2014-2573
25.03.2014, 16:55
The VMWare driver in OpenStack Compute (Nova) 2013.2 through 2013.2.2 does not properly put VMs into RESCUE status, which allows remote authenticated users to bypass the quota limit and cause a denial of service (resource consumption) by requesting the VM be put into rescue and then deleting the image.Enginsight
Vendor | Product | Version |
---|---|---|
openstack | compute | 2013.2 |
openstack | compute | 2013.2.1 |
openstack | compute | 2013.2.2 |
𝑥
= Vulnerable software versions

Debian Releases
Common Weakness Enumeration
References