Alerts This Week
Warning Icon 1 659
Alerts This Week
Warning Icon 1 659

SUSE Cloud: 2012:1455-1 Important: OpenStack Image Deletion Flaw

suse
Calendar Grey November 8, 2012
Dist Suse Esm H88
SUSE Security Patch counters major vulnerability in OpenStack Nova. Resolution provided for instance launching defect.
An update that fixes one vulnerability is now available

Summary

OpenStack glance had a bug where image deletion was allowed for all logged in users (CVE-2012-4573). This has been fixed. Security Issue reference: * CVE-2012-4573 Patch Instructions: To install this SUSE Security Update use YaST online_update. Alternatively you can run the command listed for your product: - SUSE Cloud 1.0: zypper in -t patch sleclo10sp2-openstack-glance-7033 To bring your system up-to-date, use "zypper patch". Package List: - SUSE Cloud 1.0 (x86_64): openstack-glance-2012.1+git.1344578005.120fcf4-0.7.1 python-glance-2012.1+git.1344578005.120fcf4-0.7.1

References

#787814

Cross- CVE-2012-4573

Affected Products:

SUSE Cloud 1.0

https://www.suse.com/security/cve/CVE-2012-4573.html

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2012:1455-1
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here