Security Advisory

CVE-2013-4497

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2013-11-05 20:00:00
Last updated 2024-08-06 16:45:14
Assigner redhat
State PUBLISHED

Description

The XenAPI backend in OpenStack Compute (Nova) Folsom, Grizzly, and Havana before 2013.2 does not properly apply security groups (1) when resizing an image or (2) during live migration, which allows remote attackers to bypass intended restrictions.