OpenStack Compute (Nova) before 2015.1.3 (kilo) and 12.0.x before 12.0.1 (liberty), when using libvirt to spawn instances and use_cow_images is set to false, allow remote authenticated users to read arbitrary files by overwriting an instance disk with a crafted image and requesting a snapshot.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: redhat
Published: 2016-01-12T19:00:00
Updated: 2024-08-06T07:51:28.584Z
Reserved: 2015-09-29T00:00:00
Link: CVE-2015-7548
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2016-01-12T19:59:06.017
Modified: 2018-11-16T15:11:27.313
Link: CVE-2015-7548
Redhat