Description
Eucalyptus before 2.0.3 and Eucalyptus EE before 2.0.2, as used in Ubuntu Enterprise Cloud (UEC) and other products, do not properly interpret signed elements in SOAP requests, which allows man-in-the-middle attackers to execute arbitrary commands by modifying a request, related to an "XML Signature Element Wrapping" or a "SOAP signature replay" issue.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2011-0743 | Eucalyptus before 2.0.3 and Eucalyptus EE before 2.0.2, as used in Ubuntu Enterprise Cloud (UEC) and other products, do not properly interpret signed elements in SOAP requests, which allows man-in-the-middle attackers to execute arbitrary commands by modifying a request, related to an "XML Signature Element Wrapping" or a "SOAP signature replay" issue. |
Ubuntu USN |
USN-1137-1 | Eucalyptus vulnerability |
References
History
No history.
Status: PUBLISHED
Assigner: canonical
Published:
Updated: 2024-08-06T22:05:53.358Z
Reserved: 2011-02-01T00:00:00.000Z
Link: CVE-2011-0730
No data.
Status : Deferred
Published: 2011-06-02T19:55:03.777
Modified: 2025-04-11T00:51:21.963
Link: CVE-2011-0730
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Ubuntu USN