CVE-2023-2088
12.05.2023, 21:15
A flaw was found in OpenStack due to an inconsistency between Cinder and Nova. This issue can be triggered intentionally or by accident. A remote, authenticated attacker could exploit this vulnerability by detaching one of their volumes from Cinder. The highest impact is to confidentiality.Enginsight
Vendor | Product | Version |
---|---|---|
redhat | openstack | - |
𝑥
= Vulnerable software versions

Debian Releases
Debian Product | |||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
cinder |
| ||||||||||||||
nova |
| ||||||||||||||
python-glance-store |
| ||||||||||||||
python-os-brick |
|

Ubuntu Releases
Ubuntu Product | |||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
cinder |
| ||||||||||||||
ironic |
| ||||||||||||||
nova |
| ||||||||||||||
python-glance-store |
| ||||||||||||||
python-os-brick |
|
Common Weakness Enumeration