Description
A flaw was found in PackStack. This vulnerability allows a local user to modify deployed systems by changing the answer file, which is created in insecure directories such as /tmp or the current working directory. This insecure file creation could lead to unauthorized system modifications.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2013-1834 | PackStack 2012.2.3 in Red Hat OpenStack Essex and Folsom can create the answer file in insecure directories such as /tmp or the current working directory, which allows local users to modify deployed systems by changing this file. |
References
History
Thu, 30 Apr 2026 16:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | PackStack 2012.2.3 in Red Hat OpenStack Essex and Folsom can create the answer file in insecure directories such as /tmp or the current working directory, which allows local users to modify deployed systems by changing this file. | A flaw was found in PackStack. This vulnerability allows a local user to modify deployed systems by changing the answer file, which is created in insecure directories such as /tmp or the current working directory. This insecure file creation could lead to unauthorized system modifications. |
| Title | packstack: answerfile creation permissions issue | Packstack: red hat openstack: packstack: unauthorized system modification via insecure answer file creation |
| Weaknesses | CWE-379 | |
| CPEs | cpe:/a:redhat:openstack:4 cpe:/a:redhat:openstack:5::el6 |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2026-04-30T16:33:23.209Z
Reserved: 2013-02-19T00:00:00.000Z
Link: CVE-2013-1815
No data.
Status : Modified
Published: 2013-04-10T15:55:15.237
Modified: 2026-04-30T17:16:24.377
Link: CVE-2013-1815
OpenCVE Enrichment
No data.
EUVD