Security Advisory

CVE-2011-4596

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2011-12-23 22:00:00
Last updated 2024-08-07 00:09:19
Assigner redhat
CVSS score not scored
State PUBLISHED

Description

Multiple directory traversal vulnerabilities in OpenStack Nova before 2011.3.1, when the EC2 API and the S3/RegisterImage image-registration method are enabled, allow remote authenticated users to overwrite arbitrary files via a crafted (1) tarball or (2) manifest.