4.3
CVSSv2

CVE-2012-5625

Published: 26/12/2012 Updated: 15/02/2013
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:P/I:N/A:N

Vulnerability Summary

OpenStack Compute (Nova) Folsom prior to 2012.2.2 and Grizzly, when using libvirt and LVM backed instances, does not properly clear physical volume (PV) content when reallocating for instances, which allows malicious users to obtain sensitive information by reading the memory of the previous logical volume (LV).

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

openstack folsom 2012.2

openstack grizzly -

Vendor Advisories

Synopsis Important: openstack-nova security and bug fix update Type/Severity Security Advisory: Important Topic Updated openstack-nova packages that fix two security issues and multiplebugs are now available for Red Hat OpenStack FolsomThe Red Hat Security Response Team has rated this update as havingimpor ...
Nova could be made to expose sensitive information ...