Lucene search

K
cveMitreCVE-2024-40767
HistoryJul 24, 2024 - 5:15 a.m.

CVE-2024-40767

2024-07-2405:15:12
mitre
web.nvd.nist.gov
36
20
openstack nova
insecure file handling
unauthorized access

CVSS3

6.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

AI Score

6.5

Confidence

Low

EPSS

0.003

Percentile

66.3%

In OpenStack Nova before 27.4.1, 28 before 28.2.1, and 29 before 29.1.1, by supplying a raw format image that is actually a crafted QCOW2 image with a backing file path or VMDK flat image with a descriptor file path, an authenticated user may convince systems to return a copy of the referenced file’s contents from the server, resulting in unauthorized access to potentially sensitive data. All Nova deployments are affected. NOTE: this issue exists because of an incomplete fix for CVE-2022-47951 and CVE-2024-32498.

Affected configurations

Nvd
Node
openstacknovaRange<27.4.1
OR
openstacknovaRange28.0.028.2.1
OR
openstacknovaRange29.0.029.1.1
VendorProductVersionCPE
openstacknova*cpe:2.3:a:openstack:nova:*:*:*:*:*:*:*:*

Social References

More

CVSS3

6.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

AI Score

6.5

Confidence

Low

EPSS

0.003

Percentile

66.3%