4
CVSSv2

CVE-2014-9684

Published: 24/02/2015 Updated: 03/01/2017
CVSS v2 Base Score: 4 | Impact Score: 2.9 | Exploitability Score: 8
VMScore: 356
Vector: AV:N/AC:L/Au:S/C:N/I:N/A:P

Vulnerability Summary

OpenStack Image Registry and Delivery Service (Glance) 2014.2 up to and including 2014.2.2 does not properly remove images, which allows remote authenticated users to cause a denial of service (disk consumption) by creating a large number of images using the task v2 API and then deleting them before the uploads finish, a different vulnerability than CVE-2015-1881.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

openstack image registry and delivery service \\(glance\\) 2014.2

openstack image registry and delivery service \\(glance\\) 2014.2.1

openstack image registry and delivery service \\(glance\\) 2014.2.2