CVE-2023-2088
12.05.2023, 21:15
A flaw was found in OpenStack due to an inconsistency between Cinder and Nova. This issue can be triggered intentionally or by accident. A remote, authenticated attacker could exploit this vulnerability by detaching one of their volumes from Cinder. The highest impact is to confidentiality.Enginsight
| Vendor | Product | Version |
|---|---|---|
| redhat | openstack | - |
𝑥
= Vulnerable software versions
Debian Releases
Debian Product | |||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| cinder |
| ||||||||||||||
| nova |
| ||||||||||||||
| python-glance-store |
| ||||||||||||||
| python-os-brick |
|
Ubuntu Releases
Ubuntu Product | |||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| cinder |
| ||||||||||||||
| ironic |
| ||||||||||||||
| nova |
| ||||||||||||||
| python-glance-store |
| ||||||||||||||
| python-os-brick |
|
Common Weakness Enumeration