5.5
CVSSv3

CVE-2015-8234

Published: 29/03/2017 Updated: 04/04/2017
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 5.5 | Impact Score: 3.6 | Exploitability Score: 1.8
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

The image signature algorithm in OpenStack Glance 11.0.0 allows remote malicious users to bypass the signature verification process via a crafted image, which triggers an MD5 collision.

Vulnerable Product Search on Vulmon Subscribe to Product

openstack glance 11.0.0

Vendor Advisories

The image signature algorithm in OpenStack Glance 1100 allows remote attackers to bypass the signature verification process via a crafted image, which triggers an MD5 collision ...