Description
A flaw was found in OpenStack due to an inconsistency between Cinder and Nova. This issue can be triggered intentionally or by accident. A remote, authenticated attacker could exploit this vulnerability by detaching one of their volumes from Cinder. The highest impact is to confidentiality.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-3871-1 | cinder security update |
EUVD |
EUVD-2023-33614 | A flaw was found in OpenStack due to an inconsistency between Cinder and Nova. This issue can be triggered intentionally or by accident. A remote, authenticated attacker could exploit this vulnerability by detaching one of their volumes from Cinder. The highest impact is to confidentiality. |
Ubuntu USN |
USN-6073-1 | Cinder vulnerability |
Ubuntu USN |
USN-6073-2 | Glance_store vulnerability |
Ubuntu USN |
USN-6073-3 | Nova vulnerability |
Ubuntu USN |
USN-6073-4 | os-brick vulnerability |
Ubuntu USN |
USN-6241-1 | OpenStack vulnerability |
References
History
Tue, 04 Nov 2025 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Fri, 24 Jan 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2025-11-04T16:09:57.798Z
Reserved: 2023-04-14T00:00:00.000Z
Link: CVE-2023-2088
Updated: 2025-11-04T16:09:57.798Z
Status : Modified
Published: 2023-05-12T21:15:09.430
Modified: 2025-11-04T16:15:52.893
Link: CVE-2023-2088
OpenCVE Enrichment
No data.
Weaknesses
Debian DLA
EUVD
Ubuntu USN