First published: Tue Jan 22 2013(Updated: )
Russel Bryant rbryant reports on behalf of the OpenStack Project: Title: Boot from volume allows access to random volumes Reporter: Phil Day (HP) Products: Nova Affects: Essex, Folsom Description: Phil Day from HP reported a vulnerability in volume attachment in nova-volume, affecting the boot-from-volume feature. By passing a specific volume ID, an authenticated user may be able to boot from a volume he doesn't own, potentially resulting in full access to that 3rd-party volume contents. Folsom setups making use of Cinder are not affected. Proposed patches: See attached patches for the Folsom and Essex series. Unless a flaw is discovered in them, these proposed patches will be merged to Nova stable/folsom and stable/essex branches on the public disclosure date.
Affected Software | Affected Version | How to fix |
---|---|---|
OpenStack Nova-LXD | >=Essex<Folsom |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of REDHAT-BUG-902629 is considered moderate due to potential unauthorized access to random volumes.
To fix REDHAT-BUG-902629, upgrade OpenStack Nova to a version beyond Folsom, which addresses the volume attachment vulnerability.
REDHAT-BUG-902629 affects OpenStack Nova versions from Essex through Folsom.
REDHAT-BUG-902629 can lead to unauthorized access to potentially sensitive data stored on random volumes.
REDHAT-BUG-902629 was reported by Phil Day from HP on behalf of the OpenStack Project.