Safety vulnerability ID: 35634
The information on this page was manually curated by our Cybersecurity Intelligence Team.
OpenStack Image Service (Glance) before 2014.2.4 (juno) and 2015.1.x before 2015.1.2 (kilo) allow remote authenticated users to change the status of their images and bypass access restrictions via the HTTP x-image-meta-status header to images/*.
Latest version: 29.0.0
OpenStack Image Service
OpenStack Image Service (Glance) before 2014.2.4 (juno) and 2015.1.x before 2015.1.2 (kilo) allow remote authenticated users to change the status of their images and bypass access restrictions via the HTTP x-image-meta-status header to images/*.
CONFIRM:https://bugs.launchpad.net/bugs/1482371: https://bugs.launchpad.net/bugs/1482371
CONFIRM:https://security.openstack.org/ossa/OSSA-2015-019.html: https://security.openstack.org/ossa/OSSA-2015-019.html
REDHAT:RHSA-2015:1897: http://rhn.redhat.com/errata/RHSA-2015-1897.html
Scan your Python project for dependency vulnerabilities in two minutes
Scan your application