Beveiligingsadvies

CVE-2012-2654

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2012-06-21 15:00:00
Laatst bijgewerkt 2024-08-06 19:42:31
Toegewezen door redhat
CVSS-score geen score
Status PUBLISHED

Beschrijving

The (1) EC2 and (2) OS APIs in OpenStack Compute (Nova) Folsom (2012.2), Essex (2012.1), and Diablo (2011.3) do not properly check the protocol when security groups are created and the network protocol is not specified entirely in lowercase, which allows remote attackers to bypass intended access restrictions.