REDHAT-BUG-902629: High severity openstack compute (nova) vulnerability
Russel Bryant rbryant reports on behalf of the OpenStack Project:
Title: Boot from volume allows access to random volumes Reporter: Phil Day (HP) Products: Nova Affects: Essex, Folsom
Description: Phil Day from HP reported a vulnerability in volume attachment in nova-volume, affecting the boot-from-volume feature. By passing a specific volume ID, an authenticated user may be able to boot from a volume he doesn't own, potentially resulting in full access to that 3rd-party volume contents. Folsom setups making use of Cinder are not affected.
Proposed patches: See attached patches for the Folsom and Essex series. Unless a flaw is discovered in them, these proposed patches will be merged to Nova stable/folsom and stable/essex branches on the public disclosure date.
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-902629?
The severity of REDHAT-BUG-902629 is considered moderate due to potential unauthorized access to random volumes.
How do I fix REDHAT-BUG-902629?
To fix REDHAT-BUG-902629, upgrade OpenStack Nova to a version beyond Folsom, which addresses the volume attachment vulnerability.
Which versions of OpenStack Nova are affected by REDHAT-BUG-902629?
REDHAT-BUG-902629 affects OpenStack Nova versions from Essex through Folsom.
What impact does REDHAT-BUG-902629 have on cloud security?
REDHAT-BUG-902629 can lead to unauthorized access to potentially sensitive data stored on random volumes.
Who reported REDHAT-BUG-902629?
REDHAT-BUG-902629 was reported by Phil Day from HP on behalf of the OpenStack Project.